7.8 High
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
8.8 High
AI Score
Confidence
High
0.005 Low
EPSS
Percentile
75.8%
USN-5760-1 fixed vulnerabilities in libxml2. This update provides the
corresponding updates for Ubuntu 14.04 ESM and Ubuntu 16.04 ESM.
Original advisory details:
It was discovered that libxml2 incorrectly handled certain XML files.
An attacker could possibly use this issue to expose sensitive information
or cause a crash. (CVE-2022-40303)
It was discovered that libxml2 incorrectly handled certain XML files.
An attacker could possibly use this issue to execute arbitrary code.
(CVE-2022-40304)
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Ubuntu | 16.04 | noarch | libxml2 | < 2.9.3+dfsg1-1ubuntu0.7+esm4 | UNKNOWN |
Ubuntu | 16.04 | noarch | libxml2 | < 2.9.3+dfsg1-1ubuntu0.7 | UNKNOWN |
Ubuntu | 16.04 | noarch | libxml2-dbg | < 2.9.3+dfsg1-1ubuntu0.7 | UNKNOWN |
Ubuntu | 16.04 | noarch | libxml2-dbgsym | < 2.9.3+dfsg1-1ubuntu0.7 | UNKNOWN |
Ubuntu | 16.04 | noarch | libxml2-dev | < 2.9.3+dfsg1-1ubuntu0.7 | UNKNOWN |
Ubuntu | 16.04 | noarch | libxml2-dev-dbgsym | < 2.9.3+dfsg1-1ubuntu0.7 | UNKNOWN |
Ubuntu | 16.04 | noarch | libxml2-doc | < 2.9.3+dfsg1-1ubuntu0.7 | UNKNOWN |
Ubuntu | 16.04 | noarch | libxml2-udeb | < 2.9.3+dfsg1-1ubuntu0.7 | UNKNOWN |
Ubuntu | 16.04 | noarch | libxml2-udeb-dbgsym | < 2.9.3+dfsg1-1ubuntu0.7 | UNKNOWN |
Ubuntu | 16.04 | noarch | libxml2-utils | < 2.9.3+dfsg1-1ubuntu0.7 | UNKNOWN |
7.8 High
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
8.8 High
AI Score
Confidence
High
0.005 Low
EPSS
Percentile
75.8%