Vulnerability & Exploit Database

Displaying all 3 entries

Results for: CVE-2018-9566 Back to search

Alpine Linux: CVE-2018-14567: libxml2 Multiple vulnerabilities Vulnerability

  • Severity: 4
  • Published: August 16, 2018

libxml2 2.9.8, if --with-lzma is used, allows remote attackers to cause a denial of service (infinite loop) via a crafted XML file that triggers LZMA_MEMLIMIT_ERROR, as demonstrated by xmllint, a different vulnerability than CVE-2015-8035 and CVE-2018-9251.

Alpine Linux: CVE-2018-14404: libxml2 Multiple vulnerabilities Vulnerability

  • Severity: 5
  • Published: July 19, 2018

A NULL pointer dereference vulnerability exists in the xpath.c:xmlXPathCompOpEval() function of libxml2 through 2.9.8 when parsing an invalid XPath expression in the XPATH_OP_AND or XPATH_OP_OR case. Applications processing untrusted XSL format inputs with the use of the libxml2 library may be vulnerable to a denial of service attack due...

Alpine Linux: CVE-2018-9251: libxml2 Multiple vulnerabilities Vulnerability

  • Severity: 3
  • Published: April 03, 2018

The xz_decomp function in xzlib.c in libxml2 2.9.8, if --with-lzma is used, allows remote attackers to cause a denial of service (infinite loop) via a crafted XML file that triggers LZMA_MEMLIMIT_ERROR, as demonstrated by xmllint, a different vulnerability than CVE-2015-8035.