CVE-2008-4225

Publication date 25 November 2008

Last updated 24 July 2024


Ubuntu priority

Integer overflow in the xmlBufferResize function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (infinite loop) via a large XML document.

Status

Package Ubuntu Release Status
libxml2 8.10 intrepid
Fixed 2.6.32.dfsg-4ubuntu1.1
8.04 LTS hardy
Fixed 2.6.31.dfsg-2ubuntu1.3
7.10 gutsy
Fixed 2.6.30.dfsg-2ubuntu1.4
6.06 LTS dapper
Fixed 2.6.24.dfsg-1ubuntu1.4

References

Related Ubuntu Security Notices (USN)

    • USN-673-1
    • libxml2 vulnerabilities
    • 19 November 2008

Other references