Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The xz_decomp function in xzlib.c in libxml2 2.9.1 does not properly detect compression errors, which allows context-dependent attackers to cause a denial of service (process hang) via crafted XML data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Libxml2‘parser.c’远程拒绝服务漏洞
Vulnerability Description
Libxml2是GNOME项目组所研发的一个基于C语言的用来解析XML文档的函数库,它支持多种编码格式、Xpath解析、Well-formed和valid验证等。 Libxml2 2.9.1版本的xzlib.c文件中的‘xz_decomp’函数存在安全漏洞,该漏洞源于程序没有正确检查压缩错误。攻击者可借助特制的XML数据利用该漏洞造成拒绝服务(进程挂起)。
CVSS Information
N/A
Vulnerability Type
N/A