Improper Resource Shutdown or Release
Affecting libxml2 package, versions *
Report new vulnerabilities
Do your applications use this vulnerable package?
Test your applications
Overview
xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.
References
CVSS Score
7.5
high severity
-
Attack VectorNetwork
-
Attack ComplexityLow
-
Privileges RequiredNone
-
User InteractionNone
-
ScopeUnchanged
-
ConfidentialityNone
-
IntegrityNone
-
AvailabilityHigh
- CVE
- CVE-2019-20388
- CWE
- CWE-404
- Snyk ID
- SNYK-DEBIAN8-LIBXML2-542921
- Disclosed
- 21 Jan, 2020
- Published
- 22 Jan, 2020