CVE-2016-4483
11.04.2017, 16:59
The xmlBufAttrSerializeTxtContent function in xmlsave.c in libxml2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and application crash) via a non-UTF-8 attribute value, related to serialization. NOTE: this vulnerability may be a duplicate of CVE-2016-3627.Enginsight
Vendor | Product | Version |
---|---|---|
xmlsoft | libxml2 | 𝑥 < 2.9.4 |
debian | debian_linux | 8.0 |
oracle | solaris | 11.3 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References