Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-9318
Description:libxml2 2.9.4 and earlier, as used in XMLSec 1.2.23 and earlier and other products, does not offer a flag directly indicating that the current document may be read but other files may not be opened, which makes it easier for remote attackers to conduct XML External Entity (XXE) attacks via a crafted document.
Test IDs: 1.3.6.1.4.1.25623.1.0.892972   1.3.6.1.4.1.25623.1.1.4.2019.13985.1   1.3.6.1.4.1.25623.1.1.2.2019.1353   1.3.6.1.4.1.25623.1.1.4.2019.1896.1   1.3.6.1.4.1.25623.1.1.2.2017.1070   1.3.6.1.4.1.25623.1.1.4.2017.2699.1   1.3.6.1.4.1.25623.1.1.4.2017.1557.1   1.3.6.1.4.1.25623.1.1.4.2017.2701.1   1.3.6.1.4.1.25623.1.1.2.2017.1069   1.3.6.1.4.1.25623.1.1.4.2017.0164.1   1.3.6.1.4.1.25623.1.1.4.2017.2700.1   1.3.6.1.4.1.25623.1.1.4.2017.0380.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-9318
BugTraq ID: 94347
http://www.securityfocus.com/bid/94347
https://security.gentoo.org/glsa/201711-01
https://bugzilla.gnome.org/show_bug.cgi?id=772726
https://github.com/lsh123/xmlsec/issues/43
https://lists.debian.org/debian-lts-announce/2022/04/msg00004.html
https://usn.ubuntu.com/3739-1/
https://usn.ubuntu.com/3739-2/




© 1998-2025 E-Soft Inc. All rights reserved.