Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2020-7595 - CERT CVE
CVE-2020-7595
ID
CVE-2020-7595
Sažetak
xmlStringLenDecodeEntities in parser.c in libxml2 2.9.10 has an infinite loop in a certain end-of-file situation.
Reference
https://gitlab.gnome.org/GNOME/libxml2/commit/0e1a49c89076
https://usn.ubuntu.com/4274-1/
http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00047.html
https://security.netapp.com/advisory/ntap-20200702-0005/
https://www.oracle.com/security-alerts/cpujul2020.html
https://lists.debian.org/debian-lts-announce/2020/09/msg00009.html
https://security.gentoo.org/glsa/202010-04
https://cert-portal.siemens.com/productcert/pdf/ssa-292794.pdf
https://us-cert.cisa.gov/ics/advisories/icsa-21-103-08
https://www.oracle.com/security-alerts/cpuoct2021.html
https://www.oracle.com/security-alerts/cpuapr2022.html
https://www.oracle.com/security-alerts/cpujul2022.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/545SPOI3ZPPNPX4TFRIVE4JVRTJRKULL/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5R55ZR52RMBX24TQTWHCIWKJVRV6YAWI/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JDPF3AAVKUAKDYFMFKSIQSVVS3EEFPQH/
CVSS
Base:
5.0
Impact:
2.9
Exploitability:
10.0
Pristup
Vektor
Složenost
Autentikacija
NETWORK
LOW
NONE
Impact
Povjerljivost
Cjelovitost
Dostupnost
NONE
NONE
PARTIAL
CVSS vektor
AV:N/AC:L/Au:N/C:N/I:N/A:P
Zadnje važnije ažuriranje
07-11-2023 - 03:26
Objavljeno
21-01-2020 - 23:15