Total vulnerabilities in the database
jabberd2 before 2.2.14 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.
Software | From | Fixed in |
---|---|---|
jabberd2 / jabberd2 | - | 2.2.14 |
fedoraproject / fedora | 13 | 13.x |
fedoraproject / fedora | 15 | 15.x |
fedoraproject / fedora | 14 | 14.x |
apple / mac_os_x_server | 10.7.0 | 10.7.2 |
apple / mac_os_x | 10.7.0 | 10.7.2 |
apple / mac_os_x_server | - | 10.6.8 |
apple / mac_os_x | - | 10.6.8 |