Severity
7.5HIGH
EPSS
1.0%
top 22.64%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 17
Latest updateMay 14

Description

The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser.c in libxml2 2.9.3 do not properly keep track of the recursion depth, which allows context-dependent attackers to cause a denial of service (stack consumption and application crash) via a crafted XML document containing a large number of nested entity references.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages7 packages

Debianlibxml2< 2.9.3+dfsg1-1.1+3
Ubuntulibxml2< 2.9.1+dfsg1-3ubuntu4.8+1
CVEListV5red_hat/libxml2all
NVDxmlsoft/libxml22.9.3
NVDopensuse/leap42.1

Also affects: Debian Linux 8.0, Ubuntu Linux 12.04, 14.04, 15.10, 16.04

🔴Vulnerability Details

4
GHSA
GHSA-r6qj-ff26-p4v7: The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser2022-05-14
OSV
libxml2 vulnerabilities2016-06-06
OSV
CVE-2016-3705: The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser2016-05-17
CVEList
CVE-2016-3705: The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser2016-05-17

📋Vendor Advisories

4
Ubuntu
libxml2 vulnerabilities2016-06-06
Red Hat
libxml2: stack overflow before detecting invalid XML file2016-05-03
Red Hat
libxml2: stack overflow before detecting invalid XML file (unfixed CVE-2016-3705 in JBCS)2016-05-03
Debian
CVE-2016-3705: libxml2 - The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser...2016

💬Community

5
Bugzilla
CVE-2016-9597 libxml2: stack overflow before detecting invalid XML file (unfixed CVE-2016-3705 in JBCS)2016-12-22
Bugzilla
CVE-2016-3705 mingw-libxml2: libxml2: stack overflow before detecting invalid XML file [fedora-all]2016-05-04
Bugzilla
CVE-2016-3705 libxml2: stack overflow before detecting invalid XML file [fedora-all]2016-05-04
Bugzilla
CVE-2016-3705 mingw-libxml2: libxml2: stack overflow before detecting invalid XML file [epel-7]2016-05-04
Bugzilla
CVE-2016-3705 libxml2: stack overflow before detecting invalid XML file2016-05-03
CVE-2016-3705 (HIGH CVSS 7.5) | The (1) xmlParserEntityCheck and (2 | cvebase.io