Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences
Vulnerability Description
XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences. A node name ending in the middle of a multi byte UTF-8 sequence causes the parser to read past the end of the input string into adjacent heap memory. Any Perl process that passes attacker controlled strings to XML::LibXML's DOM node-name methods can reach this path on the default API. The likely consequence is a crash, causing denial of service.
CVSS Information
N/A
Vulnerability Type
跨界内存读
Vulnerability Title
XML::LibXML 缓冲区错误漏洞
Vulnerability Description
XML::LibXML是CPAN Authors开源的一个用于解析和操作XML文件的Perl接口工具。 XML::LibXML 2.0210及之前版本存在缓冲区错误漏洞,该漏洞源于解析包含截断UTF-8字节序列的XML节点名称时读取越界堆内存,导致解析器读取超出输入字符串末尾进入相邻堆内存,可能造成崩溃。
CVSS Information
N/A
Vulnerability Type
N/A