Denial of service or RCE from libxml2 and libxslt
High severity
GitHub Reviewed
Published
Sep 17, 2018
to the GitHub Advisory Database
•
Updated Jun 30, 2023
Description
Published to the GitHub Advisory Database
Sep 17, 2018
Reviewed
Jun 16, 2020
Last updated
Jun 30, 2023
Nokogiri is affected by series of vulnerabilities in libxml2 and libxslt, which are libraries Nokogiri depends on. It was discovered that libxml2 and libxslt incorrectly handled certain malformed documents, which can allow malicious users to cause issues ranging from denial of service to remote code execution attacks.
References