Oval Definition:oval:org.mitre.oval:tst:30847
Comment:libxml2-devel is earlier than 0:2.5.10-7
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14212
State:oval:org.mitre.oval:ste:9419
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:10505
V
Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code via (1) a long FTP URL that is not properly handled by the xmlNanoFTPScanURL function, (2) a long proxy URL containing FTP data that is not properly handled by the xmlNanoFTPScanProxy function, and other overflows related to manipulation of DNS length values, including (3) xmlNanoFTPConnect, (4) xmlNanoHTTPConnectHost, and (5) xmlNanoHTTPConnectHost.
2013-04-29
BACK