https://bugzilla.redhat.com/show_bug.cgi?id=1281930

            Bug ID: 1281930
           Summary: libxml2: Out-of-bounds heap read on 0xff char in xml
                    declaration
           Product: Security Response
         Component: vulnerability
          Keywords: Security
          Severity: low
          Priority: low
          Assignee: security-response-t...@redhat.com
          Reporter: ama...@redhat.com
                CC: athma...@gmail.com, c.davi...@gmail.com,
                    erik-fed...@vanpienbroek.nl,
                    fedora-mi...@lists.fedoraproject.org,
                    kti...@redhat.com, lfar...@lfarkas.org,
                    ohudl...@redhat.com, rjo...@redhat.com,
                    veill...@redhat.com



An out-of-bounds heap read in xmlParseXMLDecl happens when a file containing
unfinished xml declaration, e.g. <?xml versionencoding="ISO88598", is followed
by 0xff byte.

Upstream bug:

https://bugzilla.gnome.org/show_bug.cgi?id=751631

Upstream patch:

https://git.gnome.org/browse/libxml2/commit/?id=709a952110e98621c9b78c4f26462a9d8333102e

-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug 
https://bugzilla.redhat.com/token.cgi?t=RtnuYLKA2T&a=cc_unsubscribe
_______________________________________________
mingw mailing list
mingw@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/mingw

Reply via email to