Critical severity9.8NVD Advisory· Published Jun 9, 2016· Updated Jun 17, 2026
CVE-2016-4448
CVE-2016-4448
Description
Format string vulnerability in libxml2 before 2.9.4 allows attackers to have unspecified impact via format string specifiers in unknown vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
69- cpe:2.3:a:hp:icewall_federation_agent:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:tenable:log_correlation_engine:4.8.0:*:*:*:*:*:*:*
cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*
- cpe:2.3:o:oracle:linux:7:0:*:*:*:*:*:*
cpe:2.3:o:oracle:vm_server:3.3:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:oracle:vm_server:3.3:*:*:*:*:*:*:*
- cpe:2.3:o:oracle:vm_server:3.4:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.2:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:o:redhat:enterprise_linux_server_aus:7.2:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.2:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.2:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.3:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.7:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.2:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:redhat:enterprise_linux_server_tus:7.2:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*
- osv-coords31 versionspkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Desktop%2012pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP1pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP2-LTSSpkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-LTSSpkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-TERADATApkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%2012pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP1pkg:rpm/suse/libxml2&distro=SUSE%20Manager%202.1pkg:rpm/suse/libxml2&distro=SUSE%20Manager%20Proxy%202.1pkg:rpm/suse/libxml2&distro=SUSE%20OpenStack%20Cloud%205pkg:rpm/suse/libxml2-python&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP2-LTSSpkg:rpm/suse/libxml2-python&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-LTSSpkg:rpm/suse/libxml2-python&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-TERADATApkg:rpm/suse/libxml2-python&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4pkg:rpm/suse/libxml2-python&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4pkg:rpm/suse/libxml2-python&distro=SUSE%20Manager%202.1pkg:rpm/suse/libxml2-python&distro=SUSE%20Manager%20Proxy%202.1pkg:rpm/suse/libxml2-python&distro=SUSE%20OpenStack%20Cloud%205pkg:rpm/suse/python-libxml2&distro=SUSE%20Linux%20Enterprise%20Desktop%2012pkg:rpm/suse/python-libxml2&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP1pkg:rpm/suse/python-libxml2&distro=SUSE%20Linux%20Enterprise%20Server%2012pkg:rpm/suse/python-libxml2&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1pkg:rpm/suse/python-libxml2&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012pkg:rpm/suse/python-libxml2&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1
< 2.9.1-24.1+ 30 more
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.7.6-0.44.1
- (no CPE)range: < 2.7.6-0.44.1
- (no CPE)range: < 2.7.6-0.44.1
- (no CPE)range: < 2.7.6-0.44.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.7.6-0.44.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.7.6-0.44.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.7.6-0.44.1
- (no CPE)range: < 2.7.6-0.44.1
- (no CPE)range: < 2.7.6-0.44.1
- (no CPE)range: < 2.7.6-0.44.4
- (no CPE)range: < 2.7.6-0.44.4
- (no CPE)range: < 2.7.6-0.44.4
- (no CPE)range: < 2.7.6-0.44.4
- (no CPE)range: < 2.7.6-0.44.4
- (no CPE)range: < 2.7.6-0.44.4
- (no CPE)range: < 2.7.6-0.44.4
- (no CPE)range: < 2.7.6-0.44.4
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.9.1-24.1
- (no CPE)range: < 2.9.1-24.1
Patches
Vulnerability mechanics
References
27- rhn.redhat.com/errata/RHSA-2016-2957.htmlnvdThird Party Advisory
- www.openwall.com/lists/oss-security/2016/05/25/2nvdMailing ListThird Party Advisory
- www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.htmlnvdThird Party Advisory
- www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.htmlnvdThird Party Advisory
- www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.htmlnvdVendor Advisory
- www.securityfocus.com/bid/90856nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1036348nvdThird Party AdvisoryVDB Entry
- www.slackware.com/security/viewer.phpnvdThird Party Advisory
- access.redhat.com/errata/RHSA-2016:1292nvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- git.gnome.org/browse/libxml2/commit/nvdVendor Advisory
- git.gnome.org/browse/libxml2/commit/nvdVendor Advisory
- h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplaynvdThird Party Advisory
- kc.mcafee.com/corporate/indexnvdThird Party Advisory
- www.tenable.com/security/tns-2016-18nvdThird Party Advisory
- lists.apple.com/archives/security-announce/2016/Jul/msg00000.htmlnvdMailing ListRelease Notes
- lists.apple.com/archives/security-announce/2016/Jul/msg00001.htmlnvdMailing ListRelease Notes
- lists.apple.com/archives/security-announce/2016/Jul/msg00002.htmlnvdMailing ListRelease Notes
- lists.apple.com/archives/security-announce/2016/Jul/msg00003.htmlnvdMailing ListRelease Notes
- lists.apple.com/archives/security-announce/2016/Jul/msg00005.htmlnvdMailing ListRelease Notes
- xmlsoft.org/news.htmlnvdRelease Notes
- support.apple.com/HT206899nvdRelease Notes
- support.apple.com/HT206901nvdRelease Notes
- support.apple.com/HT206902nvdRelease Notes
- support.apple.com/HT206903nvdRelease Notes
- support.apple.com/HT206904nvdRelease Notes
- support.apple.com/HT206905nvdRelease Notes
News mentions
0No linked articles in our index yet.