Libxml2 out-of-bounds Memory Access Vulnerability (CVE-2015-8710)
Libxml2 out-of-bounds Memory Access Vulnerability (CVE-2015-8710)
Release date:
Updated on:
Affected Systems:
Libxml libxml2
Description:
Bugtraq id: 79811
CVE (CAN) ID: CVE-2015-8710
Libxml2 is an XML Parser and markup tool set.
Libxml2 has an out-of-bounds memory access vulnerability when parsing public HTML comments. Attackers can exploit this vulnerability to execute arbitrary code in the current user context.
<* Source: Mike Dalessio
*>
Suggestion:
Vendor patch:
Libxml
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.openwall.com/lists/oss-security/2015/04/19/4
Https://bugzilla.gnome.org/show_bug.cgi? Id = 746048
Https://git.gnome.org/browse/libxml2/commit? Id = e724879d964d774df9b7969fc846605aa1bac54c
This article permanently updates the link address: