Back

MEDIUM

mingw32-libxml2: Pointer use-after-free flaws by parsing Notation and Enumeration attribute types

Published Aug 11, 2009

Description

Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow context-dependent attackers to cause a denial of service (application crash) via crafted (1) Notation or (2) Enumeration attribute types in an XML file, as demonstrated by the Codenomicon XML fuzzing framework.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (39)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Aug 11, 2009
Updated Jan 21, 2025
Reserved Jul 9, 2009
CISA Vulnrichment
Updated Feb 6, 2024
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Aug 10, 2009