PT-2010-1059 · Xmlsoft+3 · Libxml2+4

Jan Lieskovsky

·

Publicado

2010-12-07

·

Atualizado

2024-06-15

·

CVE-2011-1944

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions libxml2 versions 2.6.x through 2.6.32 libxml2 versions 2.7.x through 2.7.8 libxml version 1.8.16 and earlier
Description The issue is related to an integer overflow in the xpath.c file of libxml2, which can cause a denial of service (crash) and possibly allow the execution of arbitrary code via a crafted XML file. This is due to a heap-based buffer overflow when adding a new namespace node, related to the handling of XPath expressions. The vulnerability can be exploited remotely, potentially leading to a violation of confidentiality, integrity, and availability of protected information.
Recommendations For libxml2 versions 2.6.x through 2.6.32, update to a version later than 2.6.32. For libxml2 versions 2.7.x through 2.7.8, update to a version later than 2.7.8. For libxml version 1.8.16 and earlier, update to a version later than 1.8.16. As a temporary workaround, consider restricting the use of the vulnerable libxml2 library until a patch is available. Avoid using the library for parsing untrusted XML files until the issue is resolved.

Exploit

Correção

DoS

Buffer Overflow

Double Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-06428
BDU:2015-06429
BDU:2015-06430
BDU:2015-08639
BDU:2015-08640
BDU:2015-08641
BDU:2015-09421
CESA-2013_0217
CVE-2011-1944
DSA-2255-1
OPENSUSE-SU-2024:10192-1
RHSA-2011:1749
RHSA-2011_1749
RHSA-2012:0017
RHSA-2012_0017
RHSA-2013:0217
RHSA-2013_0217

Produtos afetados

Centos
Junos
Red Hat
Libxml
Libxml2