Lucene search

K
debianDebianDEBIAN:DLA-334-1:C1669
HistoryOct 25, 2015 - 5:14 p.m.

[SECURITY] [DLA 334-1] libxml2 security update

2015-10-2517:14:12
lists.debian.org
19

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.3

Confidence

High

EPSS

0.006

Percentile

78.9%

Package : libxml2
Version : 2.7.8.dfsg-2+squeeze13
CVE ID : CVE-2015-7942
Debian Bug : 802827

Crafted xml causes out of bound memory access. heap-buffer-overflow in
xmlParseConditionalSections.

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.3

Confidence

High

EPSS

0.006

Percentile

78.9%