libxml2: integer overflow leading to memory corruption in xmlSAX2Characters
Published Nov 25, 2008
10.0
HIGHCVSS 2.0
EPSS 4.05%
Description
Integer overflow in the xmlSAX2Characters function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a large XML document.
Affected products
No data.
No data.
Red Hat Enterprise Linux 2.1
libxml2-0:2.4.19-12.ent
Fixed · RHSA-2008:0988
Red Hat Enterprise Linux 3
libxml2-0:2.5.10-14
Fixed · RHSA-2008:0988
Red Hat Enterprise Linux 4
libxml2-0:2.6.16-12.6
Fixed · RHSA-2008:0988
Red Hat Enterprise Linux 5
libxml2-0:2.6.26-2.1.2.7
Fixed · RHSA-2008:0988
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 2.1 | libxml2-0:2.4.19-12.ent | Fixed | RHSA-2008:0988 |
| Red Hat Enterprise Linux 3 | libxml2-0:2.5.10-14 | Fixed | RHSA-2008:0988 |
| Red Hat Enterprise Linux 4 | libxml2-0:2.6.16-12.6 | Fixed | RHSA-2008:0988 |
| Red Hat Enterprise Linux 5 | libxml2-0:2.6.26-2.1.2.7 | Fixed | RHSA-2008:0988 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:L/Au:N/C:C/I:C/A:C
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (12 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 4.05% (0.04051) | 90.33th | v5 (v2026.06.15) |
| Jun 15, 2026 | 4.05% (0.04051) | 89.29th | v5 (v2026.06.15) |
| May 12, 2026 | 7.96% (0.07959) | 92.12th | v4 (v2025.03.14) |
| Mar 30, 2025 | 3.61% (0.03607) | 86.68th | v4 (v2025.03.14) |
| Mar 29, 2025 | 9.15% (0.09154) | 87.68th | v4 (v2025.03.14) |
| Mar 17, 2025 | 3.61% (0.03607) | 86.98th | v4 (v2025.03.14) |
| Dec 12, 2024 | 1.81% (0.01809) | 88.65th | v3 (v2023.03.01) |
| Jul 10, 2024 | 1.85% (0.01855) | 88.50th | v3 (v2023.03.01) |
| Mar 7, 2023 | 1.85% (0.01855) | 86.48th | v3 (v2023.03.01) |
| Mar 6, 2023 | 4.23% (0.04229) | 87.47th | v2 (v2022.01.01) |
| Apr 1, 2022 | 4.23% (0.04229) | 86.19th | v2 (v2022.01.01) |
| Feb 4, 2022 | 4.23% (0.04229) | 69.94th | v2 (v2022.01.01) |
References (57)
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02029444 vendor-advisoryx_refsource_HP
- http://lists.apple.com/archives/security-announce/2009/Jun/msg00005.html vendor-advisoryx_refsource_APPLE
- http://lists.apple.com/archives/security-announce/2009/jun/msg00002.html vendor-advisoryx_refsource_APPLE
- http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.html vendor-advisoryx_refsource_SUSE
- http://secunia.com/advisories/32762 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/32764 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/32766 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/32773 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/32802 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/32807 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/32811 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/32872 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/32974 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/33417 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/33746 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/33792 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/34247 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/35379 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/36173 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/36235 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-200812-06.xml vendor-advisoryx_refsource_GENTOO
- http://securitytracker.com/id?1021238 vdb-entryx_refsource_SECTRACK
- http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.473974 vendor-advisoryx_refsource_SLACKWARE
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-126356-03-1 x_refsource_CONFIRM
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-141243-01-1 x_refsource_CONFIRM
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-251406-1 vendor-advisoryx_refsource_SUNALERT
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-261688-1 vendor-advisoryx_refsource_SUNALERT
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-265329-1 vendor-advisoryx_refsource_SUNALERT
- http://support.apple.com/kb/HT3613 x_refsource_CONFIRM
- http://support.apple.com/kb/HT3639 x_refsource_CONFIRM
- http://support.avaya.com/elmodocs2/security/ASA-2009-002.htm x_refsource_CONFIRM
- http://support.avaya.com/elmodocs2/security/ASA-2009-067.htm x_refsource_CONFIRM
- http://wiki.rpath.com/Advisories:rPSA-2008-0325 x_refsource_CONFIRM
- http://www.debian.org/security/2008/dsa-1666 vendor-advisoryx_refsource_DEBIANPatch
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:231 vendor-advisoryx_refsource_MANDRIVA
- http://www.osvdb.org/49993 vdb-entryx_refsource_OSVDB
- http://www.redhat.com/support/errata/RHSA-2008-0988.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/32326 vdb-entryx_refsource_BID
- http://www.ubuntu.com/usn/usn-673-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vmware.com/security/advisories/VMSA-2009-0001.html x_refsource_CONFIRM
- http://www.vupen.com/english/advisories/2008/3176 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2009/0034 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2009/0301 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2009/0323 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2009/1522 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2009/1621 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2008-4226 Vendor Advisory
- https://admin.fedoraproject.org/updates/libxml2-2.7.2-2.fc10 x_refsource_CONFIRMPatch
- https://admin.fedoraproject.org/updates/libxml2-2.7.2-2.fc9 x_refsource_CONFIRMPatch
- https://bugzilla.redhat.com/show_bug.cgi?id=470466 x_refsource_CONFIRMIssue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2008-4226
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6219 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6360 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9888 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2008-4226
- https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00472.html vendor-advisoryx_refsource_FEDORA
- https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00513.html vendor-advisoryx_refsource_FEDORA
Change history (0)
No recorded changes yet.