There's a flaw in libxml2's xmllint in versions prior to 2.9.11. An attacker who is able to submit a crafted file to be processed by xmllint could trigger a use-after-free. The greatest impact of this flaw is to confidentiality, integrity, and availability.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
xmlsoft xmllint |
||
debian debian linux 9.0 |
||
fedoraproject fedora 33 |
||
fedoraproject fedora 34 |
||
redhat enterprise linux 7.0 |
||
redhat enterprise linux 6.0 |
||
redhat jboss core services - |
||
redhat enterprise linux 8.0 |
||
netapp ontap select deploy administration utility - |
||
netapp clustered data ontap - |
||
netapp clustered data ontap antivirus connector - |
||
oracle zfs storage appliance kit 8.8 |