Infinite Loop Vulnerability in libxml2 Parser by Vendor
CVE-2020-7595
7.5HIGH
What is CVE-2020-7595?
libxml2 version 2.9.10 contains a vulnerability in the xmlStringLenDecodeEntities function, which may lead to an infinite loop under specific end-of-file conditions. This can result in high resource consumption, potentially causing denial of service. Users of affected versions are advised to upgrade to the latest version to mitigate risks.