7.1
CVSSv2

CVE-2016-4571

Published: 03/02/2017 Updated: 17/06/2021
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

The mxml_write_node function in mxml-file.c in mxml 2.9, 2.7, and possibly earlier allows remote malicious users to cause a denial of service (stack consumption) via crafted xml file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mini-xml project mini-xml

mini-xml project mini-xml 2.9

debian debian linux 8.0

Vendor Advisories

Debian Bug report logs - #825855 mxml: CVE-2016-4570 CVE-2016-4571: Stack exhaustion Package: src:mxml; Maintainer for src:mxml is Alastair McKinstry <mckinstry@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Mon, 30 May 2016 19:45:02 UTC Severity: important Tags: security, upstream Found in ...