CVE-2015-8035
EPSS 1.0%Published: 11/18/2015Modified: 4/28/2026
Description
The xz_decomp function in xzlib.c in libxml2 2.9.1 does not properly detect compression errors, which allows context-dependent attackers to cause a denial of service (process hang) via crafted XML data.
Affected packages (1)
- Debian/libxml2from 0, < 2.9.3+dfsg1-1