CVE-2015-1283
published 2015-07-23CVE-2015-1283: Multiple integer overflows in the XML_GetBuffer function in Expat through 2.1.0, as used in Google Chrome before 44.0.2403.89 and other products, allow remote…
PriorityP340medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
19.07%
97.0th percentile
Multiple integer overflows in the XML_GetBuffer function in Expat through 2.1.0, as used in Google Chrome before 44.0.2403.89 and other products, allow remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted XML data, a related issue to CVE-2015-2716.
Affected
57 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | itunes | — | — |
| apple | itunes_12.6_for_windows | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | expat | < expat 2.1.1-2 (bookworm) | expat 2.1.1-2 (bookworm) |
| debian | expat | < expat 2.1.0-7 (bookworm) | expat 2.1.0-7 (bookworm) |
| debian | libxmltok | < expat 2.1.1-2 (bookworm) | expat 2.1.1-2 (bookworm) |
| debian | libxmltok | < expat 2.1.0-7 (bookworm) | expat 2.1.0-7 (bookworm) |
| android | — | — | |
| chrome | <= 43.0.2357.134 | — | |
| libexpat_project | libexpat | <= 2.1.0 | — |
| libexpat_project | libexpat | <= 2.1.1 | — |
| mcafee | policy_auditor | < 6.5.1 | 6.5.1 |
| mozilla | firefox | <= 37.0.2 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_debian6.8MEDIUM
vendor_redhat6.8MEDIUM
vendor_ubuntu6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
libxmltok vulnerabilities
osv·2025-01-13·CVSS 6.8
CVE-2015-1283 [MEDIUM] libxmltok vulnerabilities
libxmltok vulnerabilities
It was discovered that Expat, contained within the xmltok library,
incorrectly handled malformed XML data. If a user or application were
tricked into opening a crafted XML file, an attacker could cause a denial
of service, or possibly execute arbitrary code. (CVE-2015-1283,
CVE-2016-0718, CVE-2016-4472, CVE-2019-15903)
It was discovered that Expat, contained within the xmltok library,
incorrectly handled XML data containing a large number of colons, which
could lead to excessive resource consumption. If a user or application
were tricked into opening a crafted XML file, an attacker could possibly
use this issue to cause a denial of service. (CVE-2018-20843)
It was discovered that Expat, contained within the xmltok library,
incorrectly handled certain input, whi
OSV
libxmltok vulnerabilities
osv·2022-07-19·CVSS 5.0
CVE-2012-1148 [MEDIUM] libxmltok vulnerabilities
libxmltok vulnerabilities
Tim Boddy, Gustavo Grieco and others discovered that Expat, that is
integrated in xmltok library, incorrectly handled certain files.
An attacker could possibly use these issues to cause a denial of
service, or possibly execute arbitrary code. These issues were only
addressed in Ubuntu 16.04 ESM. (CVE-2012-1148, CVE-2015-1283,
CVE-2016-0718, CVE-2016-4472, CVE-2018-20843, CVE-2019-15903,
CVE-2021-46143, CVE-2022-22822, CVE-2022-22823, CVE-2022-22824,
CVE-2022-22825, CVE-2022-22826, CVE-2022-22827)
It was discovered that Expat, that is integrated in xmltok library,
incorrectly handled encoding validation of certain files. An attacker
could possibly use this issue to cause a denial of service, or
possibly execute arbitrary code. (CVE-2022-25235)
It was discovered
GHSA
GHSA-3pwf-x7h5-r7pj: Buffer overflow in the XML parser in Mozilla Firefox before 38
ghsa_unreviewed·2022-05-13·CVSS 6.8
CVE-2015-2716 [MEDIUM] CWE-119 GHSA-3pwf-x7h5-r7pj: Buffer overflow in the XML parser in Mozilla Firefox before 38
Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amount of compressed XML data, a related issue to CVE-2015-1283.
GHSA
GHSA-6w45-gwrj-v625: Multiple integer overflows in the XML_GetBuffer function in Expat through 2
ghsa_unreviewed·2022-05-13·CVSS 7.5
CVE-2015-1283 [HIGH] CWE-190 GHSA-6w45-gwrj-v625: Multiple integer overflows in the XML_GetBuffer function in Expat through 2
Multiple integer overflows in the XML_GetBuffer function in Expat through 2.1.0, as used in Google Chrome before 44.0.2403.89 and other products, allow remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted XML data, a related issue to CVE-2015-2716.
GHSA
GHSA-855w-qg6f-ffh7: The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of servic
ghsa_unreviewed·2022-05-13·CVSS 6.8
CVE-2016-4472 [MEDIUM] CWE-119 GHSA-855w-qg6f-ffh7: The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of servic
The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted XML data. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1283 and CVE-2015-2716.
OSV
vnc4 vulnerabilities
osv·2021-03-15·CVSS 6.4
CVE-2015-0255 [MEDIUM] vnc4 vulnerabilities
vnc4 vulnerabilities
USN-2500-1 addressed CVE-2015-0255 for xorg-server. This update provides
the corresponding fix for VNC4 on Ubuntu 14.04 ESM and Ubuntu 16.04 ESM.
(CVE-2015-0255)
USN-2726-1 addressed CVE-2015-1283 for Expat. This update provides the
corresponding fix for VNC4 on Ubuntu 14.04 ESM and Ubuntu 16.04 ESM.
(CVE-2015-1283)
Original advisory details:
Olivier Fourdan discovered that the X.Org X server incorrectly handled
XkbSetGeometry requests resulting in an information leak. An attacker able
to connect to an X server, either locally or remotely, could use this issue
to possibly obtain sensitive information. (CVE-2015-0255)
It was discovered that Expat incorrectly handled malformed XML data. If a
user or application linked against Expat were tricked into opening a
crafte
OSV
CVE-2016-4472: The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of servic
osv·2016-06-30·CVSS 6.8
CVE-2016-4472 [MEDIUM] CVE-2016-4472: The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of servic
The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted XML data. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1283 and CVE-2015-2716.
OSV
oxide-qt vulnerabilities
osv·2015-08-04·CVSS 6.8
CVE-2015-1270 [MEDIUM] oxide-qt vulnerabilities
oxide-qt vulnerabilities
An uninitialized value issue was discovered in ICU. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit this to cause a denial of service. (CVE-2015-1270)
A use-after-free was discovered in the GPU process implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to cause a denial of
service via application crash, or execute arbitrary code with the
privileges of the user invoking the program. (CVE-2015-1272)
A use-after-free was discovered in the IndexedDB implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to cause a denial of
service via applicatio
OSV
CVE-2015-1283: Multiple integer overflows in the XML_GetBuffer function in Expat through 2
osv·2015-07-23·CVSS 6.8
CVE-2015-1283 [MEDIUM] CVE-2015-1283: Multiple integer overflows in the XML_GetBuffer function in Expat through 2
Multiple integer overflows in the XML_GetBuffer function in Expat through 2.1.0, as used in Google Chrome before 44.0.2403.89 and other products, allow remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted XML data, a related issue to CVE-2015-2716.
OSV
CVE-2015-2716: Buffer overflow in the XML parser in Mozilla Firefox before 38
osv·2015-05-13·CVSS 6.8
CVE-2015-2716 [MEDIUM] CVE-2015-2716: Buffer overflow in the XML parser in Mozilla Firefox before 38
Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amount of compressed XML data, a related issue to CVE-2015-1283.
Ubuntu
xmltok library vulnerabilities
vendor_ubuntu·2025-01-13·CVSS 6.8
CVE-2019-15903 [MEDIUM] xmltok library vulnerabilities
Title: xmltok library vulnerabilities
Summary: Several security issues were fixed in libxmltok.
It was discovered that Expat, contained within the xmltok library,
incorrectly handled malformed XML data. If a user or application were
tricked into opening a crafted XML file, an attacker could cause a denial
of service, or possibly execute arbitrary code. (CVE-2015-1283,
CVE-2016-0718, CVE-2016-4472, CVE-2019-15903)
It was discovered that Expat, contained within the xmltok library,
incorrectly handled XML data containing a large number of colons, which
could lead to excessive resource consumption. If a user or application
were tricked into opening a crafted XML file, an attacker could possibly
use this issue to cause a denial of service. (CVE-2018-20843)
It was discovered that Expat, cont
Ubuntu
xmltok library vulnerabilities
vendor_ubuntu·2022-07-19·CVSS 5.0
CVE-2021-46143 [MEDIUM] xmltok library vulnerabilities
Title: xmltok library vulnerabilities
Summary: Several security issues were fixed in libxmltok.
Tim Boddy, Gustavo Grieco and others discovered that Expat, that is
integrated in xmltok library, incorrectly handled certain files.
An attacker could possibly use these issues to cause a denial of
service, or possibly execute arbitrary code. These issues were only
addressed in Ubuntu 16.04 ESM. (CVE-2012-1148, CVE-2015-1283,
CVE-2016-0718, CVE-2016-4472, CVE-2018-20843, CVE-2019-15903,
CVE-2021-46143, CVE-2022-22822, CVE-2022-22823, CVE-2022-22824,
CVE-2022-22825, CVE-2022-22826, CVE-2022-22827)
It was discovered that Expat, that is integrated in xmltok library,
incorrectly handled encoding validation of certain files. An attacker
could possibly use this issue to cause a denial of service, o
Ubuntu
VNC4 vulnerabilities
vendor_ubuntu·2021-03-15·CVSS 6.4
CVE-2015-0255 [MEDIUM] VNC4 vulnerabilities
Title: VNC4 vulnerabilities
Summary: Several security issues were fixed in VNC4.
USN-2500-1 addressed CVE-2015-0255 for xorg-server. This update provides
the corresponding fix for VNC4 on Ubuntu 14.04 ESM and Ubuntu 16.04 ESM.
(CVE-2015-0255)
USN-2726-1 addressed CVE-2015-1283 for Expat. This update provides the
corresponding fix for VNC4 on Ubuntu 14.04 ESM and Ubuntu 16.04 ESM.
(CVE-2015-1283)
Original advisory details:
Olivier Fourdan discovered that the X.Org X server incorrectly handled
XkbSetGeometry requests resulting in an information leak. An attacker able
to connect to an X server, either locally or remotely, could use this issue
to possibly obtain sensitive information. (CVE-2015-0255)
It was discovered that Expat incorrectly handled malformed XML data. If a
user or applic
Apple
CVE-2015-1283: iTunes 12.6 for Windows
vendor_apple·2017-03-21·CVSS 6.8
CVE-2015-1283 [MEDIUM] CVE-2015-1283: iTunes 12.6 for Windows
Apple Security Update: About the security content of iTunes 12.6 for Windows
Product: iTunes 12.6 for Windows
CVE: CVE-2015-1283
Component: CVE-2015-1283
Apple
CVE-2015-1283: iTunes 12.6
vendor_apple·2017-03-21·CVSS 6.8
CVE-2015-1283 [MEDIUM] CVE-2015-1283: iTunes 12.6
Apple Security Update: About the security content of iTunes 12.6
Product: iTunes
Version: 12.6
CVE: CVE-2015-1283
Component: CVE-2015-1283
Android
CVE-2015-1283: Android Security Bulletin 2016-11-01
CVE: CVE-2015-1283
Severity: LOW
Affected AOSP versions: 4
vendor_android·2016-11-01·CVSS 6.8
CVE-2015-1283 [MEDIUM] CVE-2015-1283: Android Security Bulletin 2016-11-01
CVE: CVE-2015-1283
Severity: LOW
Affected AOSP versions: 4
Android Security Bulletin 2016-11-01
CVE: CVE-2015-1283
Severity: LOW
Affected AOSP versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1
References: A-27818751
Ubuntu
XML-RPC for C and C++ vulnerabilities
vendor_ubuntu·2016-06-20·CVSS 5.9
CVE-2012-6702 [MEDIUM] XML-RPC for C and C++ vulnerabilities
Title: XML-RPC for C and C++ vulnerabilities
Summary: Several security issues were fixed in XML-RPC for C and C++.
It was discovered that the Expat code in XML-RPC for C and C++ unexpectedly
called srand in certain circumstances. This could reduce the security of
calling applications. (CVE-2012-6702)
It was discovered that the Expat code in XML-RPC for C and C++ incorrectly
handled seeding the random number generator. A remote attacker could
possibly use this issue to cause a denial of service. (CVE-2016-5300)
Gustavo Grieco discovered that the Expat code in XML-RPC for C and C++
incorrectly handled malformed XML data. If a user or application linked
against XML-RPC for C and C++ were tricked into opening a crafted XML file,
an attacker could cause a denial of service, or possibly exec
Red Hat
expat: Undefined behavior and pointer overflows
vendor_redhat·2016-05-15·CVSS 6.8
CVE-2016-4472 [MEDIUM] CWE-190 expat: Undefined behavior and pointer overflows
expat: Undefined behavior and pointer overflows
The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted XML data. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1283 and CVE-2015-2716.
Package: expat (Red Hat Directory Server 8) - Under investigation
Package: apr-util (Red Hat Enterprise Linux 5) - Not affected
Package: dasher (Red Hat Enterprise Linux 5) - Not affected
Package: expat (Red Hat Enterprise Linux 5) - Will not fix
Package: firefox (Red Hat Enterprise Linux 5) - Will not fix
Package: ghostscript (Red Hat Enterprise Linux 5) - Not affected
Package: httpd (Red Hat Enterprise Linux 5) - Not affect
Debian
CVE-2016-4472: expat - The overflow protection in Expat is removed by compilers with certain optimizati...
vendor_debian·2016·CVSS 6.8
CVE-2016-4472 [MEDIUM] CVE-2016-4472: expat - The overflow protection in Expat is removed by compilers with certain optimizati...
The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted XML data. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1283 and CVE-2015-2716.
Scope: local
bookworm: resolved (fixed in 2.1.1-2)
bullseye: resolved (fixed in 2.1.1-2)
forky: resolved (fixed in 2.1.1-2)
sid: resolved (fixed in 2.1.1-2)
trixie: resolved (fixed in 2.1.1-2)
Ubuntu
Expat vulnerability
vendor_ubuntu·2015-08-31
CVE-2015-1283 Expat vulnerability
Title: Expat vulnerability
Summary: Expat could be made to crash or run programs as your login if it opened a
specially crafted file.
It was discovered that Expat incorrectly handled malformed XML data. If a
user or application linked against Expat were tricked into opening a
crafted XML file, an attacker could cause a denial of service, or possibly
execute arbitrary code.
Instructions: After a standard system upgrade you need to restart any applications linked
against Expat to effect the necessary changes.
BSD
FreeBSD-SA-15:20.expat: Multiple integer overflows in expat (libbsdxml) XML parser
bsd_advisories·2015-08-18·CVSS 6.8
CVE-2015-1283 [MEDIUM] FreeBSD-SA-15:20.expat: Multiple integer overflows in expat (libbsdxml) XML parser
FreeBSD-SA-15:20.expat Security Advisory
The FreeBSD Project
Topic: Multiple integer overflows in expat (libbsdxml) XML parser
Category: contrib
Module: libbsdxml
Announced: 2015-08-18
Affects: All supported versions of FreeBSD.
Corrected: 2015-08-18 19:30:05 UTC (stable/10, 10.2-STABLE)
2015-08-18 19:30:35 UTC (releng/10.1, 10.1-RELEASE-p18)
2015-08-18 19:30:17 UTC (releng/10.2, 10.2-RC3-p1)
2015-08-18 19:30:17 UTC (releng/10.2, 10.2-RELEASE-p1)
2015-08-18 19:30:05 UTC (stable/9, 9.3-STABLE)
2015-08-18 19:30:35 UTC (releng/9.3, 9.3-RELEASE-p23)
CVE Name: CVE-2015-1283
For general information regarding FreeBSD Security Advisories,
including descriptions of the fields above, security branches, and the
following sections, please visit .
I. Background
Expat is an XML parser library writt
Ubuntu
Oxide vulnerabilities
vendor_ubuntu·2015-08-04·CVSS 6.8
CVE-2015-1270 [MEDIUM] Oxide vulnerabilities
Title: Oxide vulnerabilities
Summary: Several security issues were fixed in Oxide.
An uninitialized value issue was discovered in ICU. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit this to cause a denial of service. (CVE-2015-1270)
A use-after-free was discovered in the GPU process implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to cause a denial of
service via application crash, or execute arbitrary code with the
privileges of the user invoking the program. (CVE-2015-1272)
A use-after-free was discovered in the IndexedDB implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potential
Red Hat
chromium-browser: Heap-buffer-overflow in expat.
vendor_redhat·2015-07-21·CVSS 6.8
CVE-2015-1283 [MEDIUM] CWE-122 chromium-browser: Heap-buffer-overflow in expat.
chromium-browser: Heap-buffer-overflow in expat.
Multiple integer overflows in the XML_GetBuffer function in Expat through 2.1.0, as used in Google Chrome before 44.0.2403.89 and other products, allow remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted XML data, a related issue to CVE-2015-2716.
Red Hat
expat: Integer overflow leading to buffer overflow in XML_GetBuffer()
vendor_redhat·2015-05-12·CVSS 6.8
CVE-2015-2716 [MEDIUM] expat: Integer overflow leading to buffer overflow in XML_GetBuffer()
expat: Integer overflow leading to buffer overflow in XML_GetBuffer()
Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amount of compressed XML data, a related issue to CVE-2015-1283.
Statement: This issue affects the version of expat package as shipped with Red Hat Enterprise Linux 5, 6 and 7. Red Hat Product Security has rated this issue as having Moderate security impact, a future update may address this flaw.
Red Hat Enterprise Linux 5 is now in Extended Life Cycle phase of the support and maintenance life cycle. This issue is not currently planned to be addressed in future updates.
Package: expat (Red Hat Enterprise Linux 5) - Will not fi
Debian
CVE-2015-1283: expat - Multiple integer overflows in the XML_GetBuffer function in Expat through 2.1.0,...
vendor_debian·2015·CVSS 6.8
CVE-2015-1283 [MEDIUM] CVE-2015-1283: expat - Multiple integer overflows in the XML_GetBuffer function in Expat through 2.1.0,...
Multiple integer overflows in the XML_GetBuffer function in Expat through 2.1.0, as used in Google Chrome before 44.0.2403.89 and other products, allow remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted XML data, a related issue to CVE-2015-2716.
Scope: local
bookworm: resolved (fixed in 2.1.0-7)
bullseye: resolved (fixed in 2.1.0-7)
forky: resolved (fixed in 2.1.0-7)
sid: resolved (fixed in 2.1.0-7)
trixie: resolved (fixed in 2.1.0-7)
No detection rules found.
No public exploits indexed.
Bugzilla
Update to Expat 2.2.1
bugzilla·2017-06-18·CVSS 4.3
[MEDIUM] Update to Expat 2.2.1
Update to Expat 2.2.1
Update expat files that live in: parser/expat/lib/
For list of fixed CVEs see:
http://www.openwall.com/lists/oss-security/2017/06/17/7
Discussion:
This fixes some integer overflows, a double free and more. So marking s-s for now.
---
FWIW I've explicitly avoided updating to the latest expat versions as they've tend to introduce more CVE's than they fix. We keep a much trimmed down (and modified) version of 2.0.0 in tree, it would be interesting to see what overlap there is and maybe just cherry-pick changes that are relevant to us.
---
I've started looking over the differences. I'll attach some patches with some no-brainers and then we can decide on the rest.
---
From the release notes:
CVE-2017-9233 External entity infinite loop DoS
Probably affects us, I
Bugzilla
CVE-2016-4472 expat: Undefined behavior and pointer overflows
bugzilla·2016-06-09·CVSS 6.8
CVE-2016-4472 [MEDIUM] CVE-2016-4472 expat: Undefined behavior and pointer overflows
CVE-2016-4472 expat: Undefined behavior and pointer overflows
It was found that original patch for issues CVE-2015-1283 and CVE-2015-2716 used overflow checks that could be optimized out by some compilers applying certain optimization settings, which can cause the vulnerability to remain even after applying the patch.
One pattern in the fix for CVE-2015-1283/CVE-2015-2716 is:
/* bufferSize is positive here */
do {
bufferSize *= 2;
} while (bufferSize 0);
if (bufferSize 0 as always true when the execution is defined, and bufferSize 0 out of the loop, that is, compile the code as if it had been written:
if (bufferSize <= 0)
errorCode = XML_ERROR_NO_MEMORY;
return NULL;
else {
do {
bufferSize *= 2;
} while (bufferSize < neededSize);
}
Both cases leads to not eliminating the vulnerability
Bugzilla
CVE-2015-1283 chromium-browser: Heap-buffer-overflow in expat.
bugzilla·2015-07-22·CVSS 6.8
CVE-2015-1283 [MEDIUM] CVE-2015-1283 chromium-browser: Heap-buffer-overflow in expat.
CVE-2015-1283 chromium-browser: Heap-buffer-overflow in expat.
An unspecified heap-buffer-overflow flaw was found in the expat component of the Chromium browser.
Upstream bug: https://code.google.com/p/chromium/issues/detail?id=492052
External References:
http://googlechromereleases.blogspot.com/2015/07/stable-channel-update_21.html
Discussion:
This issue has been addressed in the following products:
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2015:1499 https://rhn.redhat.com/errata/RHSA-2015-1499.html
---
This is the same flaw was CVE-2015-2716 as documented in the Mozilla advisory at:
https://www.mozilla.org/en-US/security/advisories/mfsa2015-54/
However in chromium, libxml2 is used to parse XML web content, expat is used a dependency of libjingle and other associate
http://googlechromereleases.blogspot.com/2015/07/stable-channel-update_21.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00038.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00064.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-06/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-06/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-06/msg00010.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1499.htmlhttp://www.debian.org/security/2015/dsa-3315http://www.debian.org/security/2015/dsa-3318http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.htmlhttp://www.securityfocus.com/bid/75973http://www.securitytracker.com/id/1033031http://www.ubuntu.com/usn/USN-2726-1https://code.google.com/p/chromium/issues/detail?id=492052https://codereview.chromium.org/1224303003https://kc.mcafee.com/corporate/index?page=content&id=SB10365https://security.gentoo.org/glsa/201603-09https://security.gentoo.org/glsa/201701-21https://source.android.com/security/bulletin/2016-11-01.htmlhttps://www.tenable.com/security/tns-2016-20http://googlechromereleases.blogspot.com/2015/07/stable-channel-update_21.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00038.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00064.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-06/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-06/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-06/msg00010.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1499.htmlhttp://www.debian.org/security/2015/dsa-3315http://www.debian.org/security/2015/dsa-3318http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.htmlhttp://www.securityfocus.com/bid/75973http://www.securitytracker.com/id/1033031http://www.ubuntu.com/usn/USN-2726-1https://code.google.com/p/chromium/issues/detail?id=492052https://codereview.chromium.org/1224303003https://kc.mcafee.com/corporate/index?page=content&id=SB10365https://security.gentoo.org/glsa/201603-09https://security.gentoo.org/glsa/201701-21https://source.android.com/security/bulletin/2016-11-01.htmlhttps://www.tenable.com/security/tns-2016-20
2015-07-23
Published