High severity7.5NVD Advisory· Published Jun 9, 2016· Updated May 6, 2026
CVE-2016-4447
CVE-2016-4447
Description
The xmlParseElementDecl function in parser.c in libxml2 before 2.9.4 allows context-dependent attackers to cause a denial of service (heap-based buffer underread and application crash) via a crafted file, involving xmlParseName.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
27- git.gnome.org/browse/libxml2/commit/nvdPatchThird Party Advisory
- kc.mcafee.com/corporate/indexnvdPatchThird Party Advisory
- www.slackware.com/security/viewer.phpnvdExploitMailing ListThird Party Advisory
- lists.apple.com/archives/security-announce/2016/Jul/msg00000.htmlnvdMailing ListThird Party Advisory
- lists.apple.com/archives/security-announce/2016/Jul/msg00001.htmlnvdMailing ListThird Party Advisory
- lists.apple.com/archives/security-announce/2016/Jul/msg00002.htmlnvdMailing ListThird Party Advisory
- lists.apple.com/archives/security-announce/2016/Jul/msg00005.htmlnvdMailing ListThird Party Advisory
- rhn.redhat.com/errata/RHSA-2016-2957.htmlnvdThird Party Advisory
- www.openwall.com/lists/oss-security/2016/05/25/2nvdMailing ListThird Party Advisory
- www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.htmlnvdThird Party Advisory
- www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.htmlnvdThird Party Advisory
- www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.htmlnvdThird Party Advisory
- www.securityfocus.com/bid/90864nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1036348nvdThird Party AdvisoryVDB Entry
- www.ubuntu.com/usn/USN-2994-1nvdThird Party Advisory
- xmlsoft.org/news.htmlnvdRelease NotesVendor Advisory
- access.redhat.com/errata/RHSA-2016:1292nvdThird Party Advisory
- h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplaynvdThird Party Advisory
- support.apple.com/HT206899nvdThird Party Advisory
- support.apple.com/HT206901nvdThird Party Advisory
- support.apple.com/HT206902nvdThird Party Advisory
- support.apple.com/HT206903nvdThird Party Advisory
- support.apple.com/HT206904nvdThird Party Advisory
- support.apple.com/HT206905nvdThird Party Advisory
- www.debian.org/security/2016/dsa-3593nvdThird Party Advisory
- www.tenable.com/security/tns-2016-18nvdThird Party Advisory
- lists.apple.com/archives/security-announce/2016/Jul/msg00003.htmlnvdMailing ListNot Applicable
News mentions
0No linked articles in our index yet.