CVE-2015-8035

EPSS 1.0%
Published: 11/18/2015Modified: 4/28/2026

Description

The xz_decomp function in xzlib.c in libxml2 2.9.1 does not properly detect compression errors, which allows context-dependent attackers to cause a denial of service (process hang) via crafted XML data.

Affected packages (1)

References (1)