Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Portable Tool Library (aka PTLib) before 2.10.10, as used in Ekiga before 4.0.1, does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted PXML document containing a large number of nested entity references, aka a "billion laughs attack."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PTLib XML解析拒绝服务漏洞
Vulnerability Description
Portable Tool Library(也称PTLib)是一个采用C++编写的Windows类库。 Ekiga 4.0.0及之前版本中使用的Portable Tool Library 2.10.10之前的版本中存在安全漏洞,该漏洞源于当扩展实体引用时程序没有正确检测递归。远程攻击者可借助包含恶意属性的PXML文档利用该漏洞造成拒绝服务(内存和CPU消耗)。
CVSS Information
N/A
Vulnerability Type
N/A