CVE-2020-24977

MEDIUM6.5EPSS 0.70%
發布日:2020/9/4修改日:2025/12/3
也稱為:ALPINE-CVE-2020-24977DEBIAN-CVE-2020-24977

描述

GNOME project libxml2 v2.9.10 has a global buffer over-read vulnerability in xmlEncodeEntitiesInternal at libxml2/entities.c. The issue has been fixed in commit 50f06b3e.

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM6.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L

參考連結(2)