CVE-2015-7942
The xmlParseConditionalSections function in parser.c in libxml2 does not properly skip intermediary entities when it stops parsing invalid input, which allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via…
Does this matter?
Lower severity and a low EPSS score (4.72%). Track it; it rarely justifies an emergency change on its own.
Description
The xmlParseConditionalSections function in parser.c in libxml2 does not properly skip intermediary entities when it stops parsing invalid input, which allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via crafted XML data, a different vulnerability than CVE-2015-7941.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 4.72% probability · 91th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- hp/icewall federation agent · hp/icewall file manager · debian/debian linux · apple/iphone os · apple/mac os x · apple/tvos · apple/watchos · canonical/ubuntu linux · xmlsoft/libxml2
- Source
- cve@mitre.org
References
- http://lists.apple.com/archives/security-announce/2016/Mar/msg00000.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2016/Mar/msg00001.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2016/Mar/msg00002.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2016/Mar/msg00004.htmlMailing List, Third Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2016-February/177341.html
- http://lists.fedoraproject.org/pipermail/package-announce/2016-February/177381.html
- http://lists.opensuse.org/opensuse-updates/2015-12/msg00120.html
- http://lists.opensuse.org/opensuse-updates/2016-01/msg00031.html
- http://marc.info/?l=bugtraq&m=145382616617563&w=2Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-2549.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-2550.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-1089.html
- http://www.debian.org/security/2015/dsa-3430Third Party Advisory
- http://www.openwall.com/lists/oss-security/2015/10/22/5
- http://www.openwall.com/lists/oss-security/2015/10/22/8
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html
- http://www.securityfocus.com/bid/79507
- http://www.securitytracker.com/id/1034243
- http://www.ubuntu.com/usn/USN-2812-1Third Party Advisory
- http://xmlsoft.org/news.html
- https://bugzilla.gnome.org/show_bug.cgi?id=744980#c8Exploit, Issue Tracking
- https://bugzilla.gnome.org/show_bug.cgi?id=756456Exploit, Issue Tracking
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04944172Third Party Advisory
- https://security.gentoo.org/glsa/201701-37
- https://support.apple.com/HT206166Vendor Advisory
- https://support.apple.com/HT206167Vendor Advisory
- https://support.apple.com/HT206168Vendor Advisory
- https://support.apple.com/HT206169Vendor Advisory
- http://lists.apple.com/archives/security-announce/2016/Mar/msg00000.htmlMailing List, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.