Candidate: CVE-2008-4225 PublicDate: 2008-11-25 23:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4225 https://ubuntu.com/security/notices/USN-673-1 Description: Integer overflow in the xmlBufferResize function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (infinite loop) via a large XML document. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Drew Yao Assigned-to: kees CVSS: Patches_libxml2: upstream_libxml2: needs-triage dapper_libxml2: released (2.6.24.dfsg-1ubuntu1.4) gutsy_libxml2: released (2.6.30.dfsg-2ubuntu1.4) hardy_libxml2: released (2.6.31.dfsg-2ubuntu1.3) intrepid_libxml2: released (2.6.32.dfsg-4ubuntu1.1) devel_libxml2: not-affected (2.6.32.dfsg-5ubuntu1)