Back

HIGH

libxml2: heap-buffer overread in dict.c

Published Apr 13, 2016

Description

dict.c in libxml2 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via an unexpected character immediately after the "<!DOCTYPE html" substring in a crafted HTML document.

Affected products

Remediation

Red Hat statement

This flaw was found to be a duplicate of CVE-2016-1839. Please see https://access.redhat.com/security/cve/CVE-2016-1839 for information about affected products and security errata.

Metrics

References (15)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner debian
Published Apr 13, 2016
Updated Aug 6, 2024
Reserved Feb 3, 2016
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date Jan 26, 2016
GHSA-7HP2-XWPJ-95JQ