CVE-2017-7376 -- libxml2

Roger Marquis marquis at roble.com
Mon Mar 19 15:06:34 UTC 2018


Assuming FreeBSD's port is also vulnerable even though the OS is not
listed in the CVE.  Can anyone confirm?

<https://nvd.nist.gov/vuln/detail/CVE-2017-7376>:

  Buffer overflow in libxml2 allows remote attackers to execute arbitrary
  code by leveraging an incorrect limit for port values when handling
  redirects.

Roger Marquis


More information about the freebsd-gnome mailing list