Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in libxml2 affects IBM BigFix Compliance Analytics. (CVE-2015-8710)

   
Affected software IBM
 
Libxml2 is vulnerable to a denial of service, caused by an out-of-bounds memory access when parsing an unclosed HTML comment. By not closing out an HTML comment, a remote attacker could exploit this vulnerability to trigger an out-of-bounds read and cause the system to crash.CVE(s): CVE-2015-8710Affected product(s) and affected version(s):IBM BigFix Security Compliance Analytics 1.7Refer to the following reference URLs for remediation and additional vulnerability details:Source Bulletin:

More info:

https://www.ibm.com/blogs/psirt/ibm-security-bulletin-vulnerability-in-libxml2-affects-ibm-bigfix-compliance-analytics-cve-2015-8710/