libxml2 vulnerabilities

Continuously find & fix vulnerabilities like these in your dependencies. Test and protect your applications

Direct Vulnerabilities

Known vulnerabilities in the libxml2 package. This does not include vulnerabilities belonging to this package’s dependencies.

Report new vulnerabilities
Vulnerability Vulnerable versions Snyk patch Published
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')
* Not available 22 Jan, 2020
  • H
Improper Resource Shutdown or Release
* Not available 22 Jan, 2020
  • H
Missing Release of Resource after Effective Lifetime
<2.9.1+dfsg1-5+deb8u8 Not available 24 Dec, 2019
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')
<2.9.1+dfsg1-5+deb8u7 Not available 16 Aug, 2018
  • H
NULL Pointer Dereference
<2.9.1+dfsg1-5+deb8u7 Not available 22 Jul, 2018
  • H
Use After Free
<2.9.1+dfsg1-5+deb8u6 Not available 27 Jun, 2018
  • M
Allocation of Resources Without Limits or Throttling
<2.9.1+dfsg1-5+deb8u7 Not available 08 Apr, 2018
  • H
Out-of-Bounds
<2.9.1+dfsg1-5+deb8u5 Not available 19 Feb, 2018
  • H
XML External Entity (XXE) Injection
<2.9.1+dfsg1-5+deb8u5 Not available 19 Feb, 2018
  • H
Out-of-bounds Write
* Not available 07 Feb, 2018
  • H
Out-of-Bounds
<2.9.1+dfsg1-5+deb8u5 Not available 23 Nov, 2017
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')
* Not available 23 Nov, 2017
  • H
Out-of-bounds Write
<2.9.1+dfsg1-5+deb8u5 Not available 14 Jun, 2017
  • H
Out-of-bounds Read
<2.9.1+dfsg1-5+deb8u5 Not available 18 May, 2017
  • H
Out-of-Bounds
<2.9.1+dfsg1-5+deb8u5 Not available 18 May, 2017
  • H
Out-of-Bounds
<2.9.1+dfsg1-5+deb8u5 Not available 18 May, 2017
  • H
Out-of-bounds Read
<2.9.1+dfsg1-5+deb8u5 Not available 18 May, 2017
  • H
Out-of-bounds Read
* Not available 10 May, 2017
  • M
NULL Pointer Dereference
* Not available 11 Apr, 2017
  • H
Deserialization of Untrusted Data
<2.9.1+dfsg1-5+deb8u2 Not available 11 Apr, 2017
  • M
XML External Entity (XXE) Injection
* Not available 16 Nov, 2016
  • H
Out-of-Bounds
<2.9.1+dfsg1-5+deb8u4 Not available 25 Sep, 2016
  • H
Use After Free
<2.9.1+dfsg1-5+deb8u4 Not available 23 Jul, 2016
  • H
Out-of-Bounds
<2.9.1+dfsg1-5+deb8u2 Not available 09 Jun, 2016
  • H
Use of Externally-Controlled Format String
* Not available 09 Jun, 2016
  • H
Improper Input Validation
<2.9.1+dfsg1-5+deb8u2 Not available 09 Jun, 2016
  • M
Out-of-bounds Read
<2.9.1+dfsg1-5+deb8u2 Not available 20 May, 2016
  • M
Use After Free
<2.9.1+dfsg1-5+deb8u2 Not available 20 May, 2016
  • M
Use After Free
<2.9.1+dfsg1-5+deb8u2 Not available 20 May, 2016
  • H
Out-of-Bounds
<2.9.1+dfsg1-5+deb8u2 Not available 20 May, 2016