CVE-2007-6284
EPSS 5.1%libxml2 - denial of service
Published: 1/12/2008Modified: 4/28/2026
Description
The xmlCurrentChar function in libxml2 before 2.6.31 allows context-dependent attackers to cause a denial of service (infinite loop) via XML containing invalid UTF-8 sequences.
Affected packages (2)
- Debian/libxml2from 0, < 2.6.30.dfsg-3.1
- Debian/libxml2from 0, < 2.6.27.dfsg-2