Security Advisory

CVE-2015-8035

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-11-18 16:00:00
Last updated 2024-08-06 08:06:31
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The xz_decomp function in xzlib.c in libxml2 2.9.1 does not properly detect compression errors, which allows context-dependent attackers to cause a denial of service (process hang) via crafted XML data.