Xmlsoft

Libxml2

115 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 05.09.2026 04:34:43
  • Zuletzt bearbeitet 15.09.2026 19:20:15

In xinclude in libxml2 before 2.15.4, xmlXIncludeProcess and xmlXIncludeProcessTree do not propagate parseFlags. This has security relevance for, for example, the XML_PARSE_NONET flag, if (without it) a custom resource loader accesses the internet an...

Medienbericht Exploit
  • EPSS 0.12%
  • Veröffentlicht 05.09.2026 04:31:21
  • Zuletzt bearbeitet 15.09.2026 19:31:15

In xmlIO in libxml2 before 2.15.4, an inconsistency in xmlOutputWriteCallback and xmlBufUse causes negative lengths to reach write callbacks, aka a lack of a check for integer overflow before calling writecallback. This has security relevance for man...

Medienbericht
  • EPSS 0.13%
  • Veröffentlicht 05.09.2026 04:29:33
  • Zuletzt bearbeitet 15.09.2026 19:35:48

In libxml2 before 2.15.4, there is a heap-based buffer overflow in xmlXPtrEvalXPtrPart because of xmlXPtrEval xpointer length saturation.

Medienbericht
  • EPSS 0.12%
  • Veröffentlicht 05.09.2026 04:27:59
  • Zuletzt bearbeitet 15.09.2026 19:37:41

xmlregexp in libxml2 before 2.15.4 has a NULL pointer dereference in xmlRegNewParserCtxt after a strdup failure, i.e., it does not calculate a string length after NULL checking.

Medienbericht
  • EPSS 0.14%
  • Veröffentlicht 05.09.2026 04:26:13
  • Zuletzt bearbeitet 15.09.2026 19:39:17

In libxml2 before 2.15.4, xmlSnprintfElements in valid.c has a strcat stack-based buffer overflow.

Medienbericht
  • EPSS 0.11%
  • Veröffentlicht 05.09.2026 04:23:14
  • Zuletzt bearbeitet 15.09.2026 19:39:45

In libxml2 before 2.15.4, xmlURIEscapeStr in uri.c has an integer overflow.

Medienbericht
  • EPSS 0.12%
  • Veröffentlicht 05.09.2026 04:21:53
  • Zuletzt bearbeitet 15.09.2026 19:40:47

In libxml2 before 2.15.4, xmlDictAddQString in dict.c has an integer overflow and resultant heap-based buffer overflow.

Medienbericht Exploit
  • EPSS 0.12%
  • Veröffentlicht 05.09.2026 04:19:30
  • Zuletzt bearbeitet 15.09.2026 19:46:11

In libxml2 before 2.15.4, xmlFAParsePosCharGroup has an out-of-bounds read, aka an out-of-bounds read in the NXT macro in xmlregexp.

  • EPSS 0.15%
  • Veröffentlicht 29.06.2026 13:21:42
  • Zuletzt bearbeitet 30.06.2026 20:22:07

libxml2 is vulnerable to multiple stack-based buffer overflows in the xmlcatalog utility when running in --shell mode. The usershell() function processes user input using fixed-size stack buffers without proper bounds checking. By supplying an overly...

Exploit
  • EPSS 0.36%
  • Veröffentlicht 22.06.2026 12:40:31
  • Zuletzt bearbeitet 14.07.2026 16:00:16

Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2.9.11 to 2.11.0 allows a remote attacker to cause a denial-of-service via maliciously crafted XML input with improper entity resolution handling.