CVE

Id
85519  
CVE No.
CVE-2015-8242  
Status
Candidate  
Description
The xmlSAX2TextNode function in SAX2.c in the push interface in the HTML parser in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service (stack-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.  
Phase
Assigned (20151118)  
Votes
None (candidate not yet proposed)  
Comments