NGINX-Demos icon indicating copy to clipboard operation
NGINX-Demos copied to clipboard

Cybersecurity vulnerability in libxml2:2.9.4-r3

Open Mugane opened this issue 4 years ago • 0 comments

This image contains the following vulnerability:

parser.c in libxml2 before 2.9.5 mishandles parameter-entity references because the NEXTL macro calls the xmlParserHandlePEReference function in the case of a '%' character in a DTD name.

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-16931

Mugane avatar Mar 15 '21 17:03 Mugane