Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.12.5. When using the XML Reader interface with DTD validation and XInclude expansion enabled, processing crafted XML documents can lead to an xmlValidatePopElement use-after-free.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libxml2 安全漏洞
Vulnerability Description
libxml2是开源的一个用来解析XML文档的函数库。它用C语言写成,并且能为多种语言所调用,例如C语言,C++,XSH。 libxml2 2.11.7 版本之前和 2.12.5 版本之前的 2.12.x 版本存在安全漏洞,该漏洞源于当使用启用了 DTD 验证和 XInclude 扩展的 XML Reader 接口时,处理精心设计的 XML 文档可能会导致 xmlValidatePopElement 释放后重用。
CVSS Information
N/A
Vulnerability Type
N/A