CVE-2015-7498
Publication date 26 November 2015
Last updated 24 July 2024
Ubuntu priority
Description
Heap-based buffer overflow in the xmlParseXmlDecl function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service via unspecified vectors related to extracting errors after an encoding conversion failure.
Status
| Package | Ubuntu Release | Status | 
|---|---|---|
| libxml2 | ||
| 14.04 LTS trusty | 
                              
                               
                                Fixed 2.9.1+dfsg1-3ubuntu4.6 
                                
                               
                             |      
                          
                            
                          
                        
                      |
References
Related Ubuntu Security Notices (USN)
- USN-2834-1
 - libxml2 vulnerabilities
 - 14 December 2015