Skip to main content

Vendor/product archive

xmlsoft / libxml CVEs

Beta · best-effort

8 CVEs tagged to xmlsoft / libxml3 Critical, 2 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2011-1944

Published Sep 2, 2011

Integer overflow in xpath.c in libxml2 2.6.x through 2.6.32 and 2.7.x through 2.7.8, and libxml 1.8.16 and earlier, allows context-dependent attackers to cause a denial of service…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-2416

Published Aug 11, 2009

Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow context-dependent attackers to cause a denial of service (a…

CVSS 6.5 · Medium

CVE-2009-2414

Published Aug 11, 2009

Stack consumption vulnerability in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allows context-dependent attackers to cause a denial of service (applicat…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4226

Published Nov 25, 2008

Integer overflow in the xmlSAX2Characters function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (memory corruption) or possibly execute arbitra…

CVSS 10.0 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2008-4225

Published Nov 25, 2008

Integer overflow in the xmlBufferResize function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (infinite loop) via a large XML document.

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2004-0110

Published Mar 15, 2004

Buffer overflow in the (1) nanohttp or (2) nanoftp modules in XMLSoft Libxml 2 (Libxml2) 2.6.0 through 2.6.5 allow remote attackers to execute arbitrary code via a long URL.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1