Lucene search

K
redhatcveRedhat.comRH:CVE-2020-24977
HistorySep 10, 2020 - 1:13 p.m.

CVE-2020-24977

2020-09-1013:13:57
redhat.com
access.redhat.com
10
gnome project
libxml2 v2.9.10
global buffer over-read
vulnerability
xmlencodeentitiesinternal
entities.c
commit 50f06b3e
mitigation
red hat product security

EPSS

0.003

Percentile

69.0%

GNOME project libxml2 v2.9.10 has a global buffer over-read vulnerability in xmlEncodeEntitiesInternal at libxml2/entities.c. The issue has been fixed in commit 50f06b3e.

Mitigation

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.