UBUNTU-CVE-2021-3541
Dashboard / Vulnerabilities / UBUNTU-CVE-2021-3541
UBUNTU-CVE-2021-3541
Summary:
Details: A flaw was found in libxml2. Exponential entity expansion attack its possible bypassing all existing protection mechanisms and leading to denial of service.
References: https://ubuntu.com/security/CVE-2021-3541, https://bugzilla.redhat.com/show_bug.cgi?id=1950515, https://gitlab.gnome.org/GNOME/libxml2/-/commit/8598060bacada41a0eb09d95c97744ff4e428f8e, https://gitlab.gnome.org/GNOME/libxml2/-/issues/228, https://blog.hartwork.org/posts/cve-2021-3541-parameter-laughs-fixed-in-libxml2-2-9-11/, https://ubuntu.com/security/notices/USN-4991-1, https://www.cve.org/CVERecord?id=CVE-2021-3541
Affected packages
Package
Name: libxml2
Purl: pkg:deb/ubuntu/[email protected]+dfsg-5ubuntu0.20.04.1?arch=source&distro=focal
Affected ranges
Type: ECOSYSTEM
Events:
