Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Xmlsoft Libxml2 v2.11.0 was discovered to contain an out-of-bounds read via the xmlSAX2StartElement() function at /libxml2/SAX2.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via supplying a crafted XML file. NOTE: the vendor's position is that the product does not support the legacy SAX1 interface with custom callbacks; there is a crash even without crafted input.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libxml2 缓冲区错误漏洞
Vulnerability Description
libxml2是开源的一个用来解析XML文档的函数库。它用C语言写成,并且能为多种语言所调用,例如C语言,C++,XSH。 libxml2 v2.11.0版本存在缓冲区错误漏洞,该漏洞源于libxml2/SAX2.c 中的 xmlSAX2StartElement() 函数包含全局缓冲区溢出,允许攻击者通过提供精心设计的 XML 文件来导致拒绝服务 (DoS)。
CVSS Information
N/A
Vulnerability Type
N/A