[xml/sgml-pkgs] Bug#849206: libxml2: CVE-2016-9598: out-of-bounds read

Salvatore Bonaccorso carnil at debian.org
Fri Dec 23 14:08:23 UTC 2016


Source: libxml2
Version: 2.9.4+dfsg1-2.1
Severity: important
Tags: security upstream

Hi,

the following vulnerability was published for libxml2.

CVE-2016-9598[0]:
out-of-bounds read

Unfortunately apart the bug [1] which only states "out-of-bounds read"
there is no further information about this vulnerability. I tried ask
Red Hat folks if there is more information available.

This bug should help to start tracking this issue.

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2016-9598
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9598
[1] https://bugzilla.redhat.com/show_bug.cgi?id=1408306

Regards,
Salvatore



More information about the debian-xml-sgml-pkgs mailing list