Lucene search

K
cvelistMitreCVELIST:CVE-2024-25062
HistoryFeb 04, 2024 - 12:00 a.m.

CVE-2024-25062

2024-02-0400:00:00
mitre
www.cve.org
9
xml
reader
vulnerability
libxml2
use-after-free

AI Score

7.7

Confidence

High

EPSS

0.001

Percentile

17.0%

An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.12.5. When using the XML Reader interface with DTD validation and XInclude expansion enabled, processing crafted XML documents can lead to an xmlValidatePopElement use-after-free.