Lucene search

K
osvGoogleOSV:CVE-2017-16931
HistoryNov 23, 2017 - 9:29 p.m.

CVE-2017-16931

2017-11-2321:29:00
Google
osv.dev
4

9.1 High

AI Score

Confidence

High

0.046 Low

EPSS

Percentile

92.6%

parser.c in libxml2 before 2.9.5 mishandles parameter-entity references because the NEXTL macro calls the xmlParserHandlePEReference function in the case of a ‘%’ character in a DTD name.