libxml2 CVE-2024-25062: Use-after-free in xmlTextReaderRead during DTD validation with XInclude

libxml2 CVE-2023-29469: Hash function fails to validate string length

posted 1 day ago

CVE-2021-3518: Use-after-free in libxml2 xmlXIncludeAddNode (xinclude.c)

CVE-2021-3518: Use-after-free in libxml2 XInclude recursive processing

posted 1 day ago

CVE-2022-40304: libxml2 dict corruption via entity reference cycle (ent->content[0]=0 on dict-owned memory)

CVE-2022-40304: libxml2 dict corruption from entity reference cycles

CVE-2022-40304: Dict Corruption via Entity Reference Cycles in libxml2

CVE-2022-40303: Integer overflow in libxml2 xmlSAX2Text → heap buffer overflow on large XML text nodes

CVE-2022-40303: libxml2 integer overflow with XML_PARSE_HUGE in xmlParseEntityValue and friends

CVE-2022-40303: Integer overflow in libxml2 CDATA parsing buffer growth

CVE-2023-0286: Type confusion in OpenSSL GENERAL_NAME_cmp for X.400 addresses — ASN1_STRING* parsed but treated as ASN1_TYPE*

CVE-2023-0286: X.509 GeneralName Type Confusion in OpenSSL 3.0.7

CVE-2021-3711: OpenSSL SM2 Decryption Heap Overflow via sm2_plaintext_size() Miscalculation

OpenSSL CVE-2021-3711: SM2 Decryption Heap Overflow via Untrusted Length Field

posted 1 day ago

CVE-2022-3602: OpenSSL 3.0 punycode stack buffer overflow in X.509 name constraint verification

OpenSSL 3.0.6 CVE-2022-3602: Stack Buffer Overflow in Punycode Decoder

posted 1 day ago

CVE-2022-3602 OpenSSL punycode 4-byte stack overflow (SPOOKY-SSL)

CVE-2022-0778: OpenSSL BN_mod_sqrt infinite loop via non-prime modulus in Tonelli-Shanks

CVE-2022-0778 OpenSSL BN_mod_sqrt Infinite Loop in Tonelli-Shanks

CVE-2014-0160 Heartbleed: Missing bounds check in OpenSSL tls1_process_heartbeat