Security News

Cybersecurity news aggregator

🔓
LOW Vulnerabilities Ubuntu Security

USN-8174-1: XML::Parser vulnerabilities

  • What: Vulnerabilities in XML::Parser allow denial of service and code execution
  • Impact: Attackers can crash the parser or execute code
Read Full Article →

It was discovered that XML::Parser incorrectly handled certain multi-byte UTF-8 characters. If a user or automated system were tricked into processing specially crafted XML data, a remote attacker could use this issue to cause XML::Parser to crash, resulting in a denial of service or to possibly execute arbitrary code. (CVE-2006-10002) It was discovered that XML::Parser incorrectly handled very deep element nesting. If a user or automated system were tricked into processing specially crafted XML data, a remote attacker could use this issue to cause XML::Parser to crash, resulting in a denial of service or to possibly execute arbitrary code (CVE-2006-10002)

Share this article