Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7254
HistoryAug 08, 2018 - 2:02 a.m.

Denial Of Service (DoS)

2018-08-0802:02:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

EPSS

0.006

Percentile

78.8%

libxml2 is vulnerable to denial of service attacks due to improper prevention of entity expansion in the xmlStringLenDecodeEntities function in parser.c. A context-dependent attacker is able to cause a denial of service by exhausting CPU using specially crafted XML data.

References