Medium severity6.5NVD Advisory· Published Feb 12, 2016· Updated May 6, 2026
CVE-2016-2073
CVE-2016-2073
Description
The htmlParseNameComplex function in HTMLparser.c in libxml2 allows attackers to cause a denial of service (out-of-bounds read) via a crafted XML document.
Affected products
6cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*+ 3 more
- cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
- cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.openwall.com/lists/oss-security/2016/01/25/6nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2016/01/26/7nvdMailing ListThird Party Advisory
- www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.htmlnvdThird Party Advisory
- www.securityfocus.com/bid/85267nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1035011nvdThird Party AdvisoryVDB Entry
- www.ubuntu.com/usn/USN-2994-1nvdThird Party Advisory
- security.gentoo.org/glsa/201701-37nvdThird Party Advisory
- www.debian.org/security/2016/dsa-3593nvdThird Party Advisory
News mentions
0No linked articles in our index yet.