Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22335
HistoryJan 22, 2020 - 1:00 p.m.

Denial Of Service (DoS)

2020-01-2213:00:16
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

0.006 Low

EPSS

Percentile

78.4%

libxml2.so is vulnerable to denial of service (DoS). When ctxt->instate == XML_PARSER_EOF, xmlParseStringEntityRef returns NULL , causing an infinite loop in the function xmlStringLenDecodeEntities in parser.c.

References