Denial of Service Vulnerability in libxml2 Affects Multiple Platforms
CVE-2015-7500

Currently unrated

Key Information:

Vendor

HP

Vendor
CVE Published:
15 December 2015

What is CVE-2015-7500?

A vulnerability exists in libxml2's xmlParseMisc function where improper handling of entity boundaries and start tags allows context-dependent attackers to trigger an out-of-bounds heap read. This can lead to a denial of service, making systems utilizing versions prior to 2.9.3 vulnerable to disruptions. It is crucial for users and administrators to update their installations to mitigate potential threats.

References

EPSS Score

5% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.