CVE-2016-1833

Priority
Description
The htmlCurrentChar function in libxml2 before 2.9.4, as used in Apple iOS
before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before
2.2.1, allows remote attackers to cause a denial of service (heap-based
buffer over-read) via a crafted XML document.
Assigned-to
mdeslaur
More Information

Updated: 2019-01-14 22:23:36 UTC (commit 51f9b73af244ba86b9321e46e526586c25a8e060)