[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2008-4226Date: (C)2008-11-25   (M)2024-02-22


Integer overflow in the xmlSAX2Characters function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a large XML document.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
SECTRACK-1021238
SUNALERT-251406
SUNALERT-261688
SUNALERT-265329
BID-32326
SECUNIA-32762
SECUNIA-32764
SECUNIA-32766
SECUNIA-32773
SECUNIA-32802
SECUNIA-32807
SECUNIA-32811
SECUNIA-32872
SECUNIA-32974
SECUNIA-33417
SECUNIA-33746
SECUNIA-33792
SECUNIA-34247
SECUNIA-35379
SECUNIA-36173
SECUNIA-36235
OSVDB-49993
ADV-2008-3176
ADV-2009-0034
ADV-2009-0301
ADV-2009-0323
ADV-2009-1522
ADV-2009-1621
APPLE-SA-2009-06-08-1
APPLE-SA-2009-06-17-1
DSA-1666
FEDORA-2008-9729
FEDORA-2008-9773
GLSA-200812-06
MDVSA-2008:231
RHSA-2008:0988
SSA:2008-324-01
SSRT100079
SUSE-SR:2008:026
USN-673-1
http://sunsolve.sun.com/search/document.do?assetkey=1-21-126356-03-1
http://sunsolve.sun.com/search/document.do?assetkey=1-21-141243-01-1
http://support.apple.com/kb/HT3613
http://support.apple.com/kb/HT3639
http://support.avaya.com/elmodocs2/security/ASA-2009-002.htm
http://support.avaya.com/elmodocs2/security/ASA-2009-067.htm
http://wiki.rpath.com/Advisories:rPSA-2008-0325
http://www.vmware.com/security/advisories/VMSA-2009-0001.html
https://admin.fedoraproject.org/updates/libxml2-2.7.2-2.fc10
https://admin.fedoraproject.org/updates/libxml2-2.7.2-2.fc9
https://bugzilla.redhat.com/show_bug.cgi?id=470466
oval:org.mitre.oval:def:6219
oval:org.mitre.oval:def:6360
oval:org.mitre.oval:def:9888

CWE    1
CWE-399
OVAL    5
oval:org.secpod.oval:def:17248
oval:org.mitre.oval:def:7803
oval:org.secpod.oval:def:301626
oval:org.secpod.oval:def:101485
...

© SecPod Technologies