Related Vulnerabilities: CVE-2016-5131  

Bugs in xmlXPathEvalExpr and xmlXPtrRangeToFunction can lead to a use-after-free and allow control of the instruction pointer.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

Bugs in xmlXPathEvalExpr and xmlXPtrRangeToFunction can lead to a use-after-free and allow control of the instruction pointer.

AVG-56 libxml2 2.9.4+4+g3169602-1 2.9.4+12+ge905f08-1 Critical Fixed

01 Nov 2016 ASA-201611-2 AVG-56 libxml2 Critical arbitrary code execution

https://git.gnome.org/browse/libxml2/commit/?id=9ab01a277d71f54d3143c2cf333c5c2e9aaedd9e
https://bugs.chromium.org/p/chromium/issues/detail?id=623378