PT-2010-1059 · Xmlsoft+3 · Libxml2+4
Jan Lieskovsky
·
Published
2010-12-07
·
Updated
2024-06-15
·
CVE-2011-1944
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
libxml2 versions 2.6.x through 2.6.32
libxml2 versions 2.7.x through 2.7.8
libxml version 1.8.16 and earlier
Description
The issue is related to an integer overflow in the xpath.c file of libxml2, which can cause a denial of service (crash) and possibly allow the execution of arbitrary code via a crafted XML file. This is due to a heap-based buffer overflow when adding a new namespace node, related to the handling of XPath expressions. The vulnerability can be exploited remotely, potentially leading to a violation of confidentiality, integrity, and availability of protected information.
Recommendations
For libxml2 versions 2.6.x through 2.6.32, update to a version later than 2.6.32.
For libxml2 versions 2.7.x through 2.7.8, update to a version later than 2.7.8.
For libxml version 1.8.16 and earlier, update to a version later than 1.8.16.
As a temporary workaround, consider restricting the use of the vulnerable libxml2 library until a patch is available. Avoid using the library for parsing untrusted XML files until the issue is resolved.
Exploit
Fix
DoS
Buffer Overflow
Double Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Centos
Junos
Red Hat
Libxml
Libxml2