CVE-2022-23308
26.02.2022, 05:15
valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes.Enginsight
| Vendor | Product | Version |
|---|---|---|
| xmlsoft | libxml2 | 𝑥 < 2.9.13 |
| debian | debian_linux | 9.0 |
| apple | ipados | 𝑥 < 15.5 |
| apple | iphone_os | 𝑥 < 15.5 |
| apple | mac_os_x | 10.15.0 ≤ 𝑥 < 10.15.7 |
| apple | mac_os_x | 10.15.7 |
| apple | mac_os_x | 10.15.7:security_update_2020-001 |
| apple | mac_os_x | 10.15.7:security_update_2021-001 |
| apple | mac_os_x | 10.15.7:security_update_2021-002 |
| apple | mac_os_x | 10.15.7:security_update_2021-003 |
| apple | mac_os_x | 10.15.7:security_update_2021-004 |
| apple | mac_os_x | 10.15.7:security_update_2021-005 |
| apple | mac_os_x | 10.15.7:security_update_2021-006 |
| apple | mac_os_x | 10.15.7:security_update_2021-007 |
| apple | mac_os_x | 10.15.7:security_update_2021-008 |
| apple | mac_os_x | 10.15.7:security_update_2022-001 |
| apple | mac_os_x | 10.15.7:security_update_2022-003 |
| apple | macos | 11.6.0 ≤ 𝑥 < 11.6.6 |
| apple | macos | 12.0 ≤ 𝑥 < 12.4 |
| apple | tvos | 𝑥 < 15.5 |
| apple | watchos | 𝑥 < 8.6 |
| netapp | active_iq_unified_manager | - |
| netapp | clustered_data_ontap | - |
| netapp | clustered_data_ontap_antivirus_connector | - |
| netapp | manageability_software_development_kit | - |
| netapp | ontap_select_deploy_administration_utility | - |
| netapp | smi-s_provider | - |
| netapp | snapdrive | - |
| netapp | snapmanager | - |
| netapp | solidfire\,_enterprise_sds_\&_hci_storage_node | - |
| netapp | solidfire_\&_hci_management_node | - |
| netapp | bootstrap_os | - |
| netapp | h300s_firmware | - |
| netapp | h500s_firmware | - |
| netapp | h700s_firmware | - |
| netapp | h300e_firmware | - |
| netapp | h500e_firmware | - |
| netapp | h700e_firmware | - |
| netapp | h410s_firmware | - |
| netapp | h410c_firmware | - |
| oracle | communications_cloud_native_core_binding_support_function | 22.2.0 |
| oracle | communications_cloud_native_core_network_function_cloud_native_environment | 22.1.0 |
| oracle | communications_cloud_native_core_network_repository_function | 22.1.2 |
| oracle | communications_cloud_native_core_network_repository_function | 22.2.0 |
| oracle | communications_cloud_native_core_network_slice_selection_function | 22.1.1 |
| oracle | communications_cloud_native_core_unified_data_repository | 22.2.0 |
| oracle | mysql_workbench | 𝑥 ≤ 8.0.29 |
| oracle | zfs_storage_appliance_kit | 8.8 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References