Out-of-bounds read in Libxml2 - CVE-2023-39615

 

Out-of-bounds read in Libxml2 - CVE-2023-39615

Published: September 21, 2023


Vulnerability identifier: #VU81044
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-39615
CWE-ID: CWE-125
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a boundary condition within the xmlSAX2StartElement() function in /libxml2/SAX2.c. A remote attacker can pass specially crafted XML input to the application, trigger an out-of-bounds read error and perform a denial of service (DoS) attack.


Affected software

Libxml2
Debian Linux
Amazon Linux AMI
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise High Performance Computing LTSS 15
SUSE Linux Enterprise High Performance Computing ESPOS 15
SUSE Linux Enterprise Real Time 15
SUSE Linux Enterprise Desktop 15
SUSE Linux Enterprise High Performance Computing 12
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Software Development Kit 12
SUSE CaaS Platform
SUSE Manager Server
SUSE Manager Proxy
SUSE Manager Retail Branch Server
SUSE Linux Enterprise Micro
SUSE Linux Enterprise Micro for Rancher
SUSE Enterprise Storage
Anolis OS
Red Hat Enterprise Linux Server - AUS
Red Hat Enterprise Linux for ARM 64 - Extended Update Support
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux Server - TUS
Red Hat Enterprise Linux for x86_64 - Extended Update Support
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
SUSE Linux Enterprise High Performance Computing 15 SP1 LTSS
SUSE Linux Enterprise Server 15 SP1 LTSS
SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS
SUSE Linux Enterprise Server 15 SP2 LTSS
SUSE Linux Enterprise Server 15 SP3 LTSS
Basesystem Module
Python 3 Module
openSUSE Leap
Red Hat OpenShift Serverless
OpenShift Container Platform for Windows Containers
OpenShift Data Foundation (formerly OpenShift Container Storage)
Red Hat OpenShift Builds
Migration Toolkit for Runtimes
Service Telemetry Framework
Service Interconnect
Cryostat
Red Hat Advanced Cluster Management for Kubernetes
Red Hat Advanced Cluster Security for Kubernetes
OpenShift Logging
Multicluster GlobalHub
Custom Metrics Autoscaler Operator for Red Hat OpenShift
Red Hat OpenShift distributed tracing (RHOSDT)
Red Hat Migration Toolkit for Applications
IBM Power Hardware Management Console (HMC)
Red Hat OpenStack
IBM Observability with Instana
OpenShift API for Data Protection (OADP)
Network Observability plugin for the Openshift Console
Migration Toolkit for Containers
Red Hat OpenShift Container Platform
Cloud Pak for Network Automation
ObjectScale
PowerStore T
Dell EMC PowerStore Family Operating System
Storage Ceph
Index Engines CyberSense
Security Verify Governance - Identity Manager virtual appliance
SmartFabric OS10
Juniper Secure Analytics (JSA)
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
libxml2
libxml2-2
libxml2-2-debuginfo-32bit
libxml2-2-32bit
libxml2-doc
libxml2-2-debuginfo
python-libxml2
python-libxml2-debugsource
python-libxml2-debuginfo
libxml2-tools
libxml2-tools-debuginfo
libxml2-debugsource
libxml2-devel
libxml2 (Red Hat package)
python3-libxml2
python-libxml2-python-debugsource
python3-libxml2-python
python3-libxml2-python-debuginfo
python2-libxml2-python
python2-libxml2-python-debuginfo
libxml2-2-32bit-debuginfo
libxml2 (Debian package)
libxml2-devel-64bit
python311-libxml2-debuginfo
libxml2-python-debugsource
python3-libxml2-debuginfo
python311-libxml2
libxml2-devel-32bit
libxml2-2-64bit
libxml2-2-64bit-debuginfo
IBM Integrated Analytics System
Red Hat OpenShift GitOps
JBoss Core Services
TeleControl Server Basic
IBM Qradar SIEM
RecoverPoint for VMs
Dell EMC VxRail Appliance
IBM Security Verify Access

How to mitigate CVE-2023-39615

Install update from vendor's website.

Libxml2 - update to 2.11.1
Red Hat OpenShift Serverless - addressed in versions 1.31.1, 1.32.0
Red Hat OpenShift Builds - update to 1.0.1
Migration Toolkit for Runtimes - addressed in versions 1.2.4, 1.2.5
OpenShift API for Data Protection (OADP) - update to 1.3.1
Service Telemetry Framework - update to 1.5.4
Service Interconnect - update to 1.5.3
Migration Toolkit for Containers - addressed in versions 1.7.15, 1.8.3
Cloud Pak for Network Automation - update to 2.7.2
Red Hat Advanced Cluster Management for Kubernetes - addressed in versions 2.8.5, 2.9.2, 2.9.3
Red Hat Advanced Cluster Security for Kubernetes - addressed in versions 4.1.6, 4.2.4
Red Hat OpenShift Container Platform - update to 4.12.53
OpenShift Logging - update to 5.8.2
Juniper Secure Analytics (JSA) - update to 7.5.0 UP8 IF03
OpenShift Container Platform for Windows Containers - addressed in versions 8.1.2, 9.0.1, 10.15.0
Multicluster GlobalHub - update to 1.0.2
IBM Integrated Analytics System - update to 1.0.30.0
ObjectScale - update to 1.4.0
Network Observability plugin for the Openshift Console - update to 1.5.0
Red Hat OpenShift GitOps - addressed in versions 1.10.0, 1.11
JBoss Core Services - addressed in versions 2.4.57 SP2, 2.4.57 SP3
libxml2 - addressed in versions 2.9.1-6.6.43, 2.10.4-1
libxml2-2 - addressed in versions 2.9.4-46.65.1, 2.9.7-150000.3.60.1, 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-2-debuginfo-32bit - update to 2.9.4-46.65.1
libxml2-2-32bit - addressed in versions 2.9.4-46.65.1, 2.9.7-150000.3.60.1, 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-doc - addressed in versions 2.9.4-46.65.1, 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-2-debuginfo - addressed in versions 2.9.4-46.65.1, 2.9.7-150000.3.60.1, 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
python-libxml2 - update to 2.9.4-46.65.1
python-libxml2-debugsource - update to 2.9.4-46.65.1
python-libxml2-debuginfo - update to 2.9.4-46.65.1
libxml2-tools - addressed in versions 2.9.4-46.65.1, 2.9.7-150000.3.60.1, 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-tools-debuginfo - addressed in versions 2.9.4-46.65.1, 2.9.7-150000.3.60.1, 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-debugsource - addressed in versions 2.9.4-46.65.1, 2.9.7-150000.3.60.1, 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-devel - addressed in versions 2.9.4-46.65.1, 2.9.7-150000.3.60.1, 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2 (Red Hat package) - addressed in versions 2.9.7-13.el8_6.4, 2.9.7-16.el8_8.2, 2.9.13-5.el9_3
libxml2 - update to 2.9.7-18.0.2
libxml2-devel - update to 2.9.7-18.0.2
python3-libxml2 - update to 2.9.7-18.0.2
python-libxml2-python-debugsource - update to 2.9.7-150000.3.60.1
python3-libxml2-python - update to 2.9.7-150000.3.60.1
python3-libxml2-python-debuginfo - update to 2.9.7-150000.3.60.1
python2-libxml2-python - update to 2.9.7-150000.3.60.1
python2-libxml2-python-debuginfo - update to 2.9.7-150000.3.60.1
libxml2-2-32bit-debuginfo - addressed in versions 2.9.7-150000.3.60.1, 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2 (Debian package) - update to 2.9.14+dfsg-1.3~deb12u2
libxml2-devel-64bit - addressed in versions 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
python311-libxml2-debuginfo - addressed in versions 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-python-debugsource - addressed in versions 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
python3-libxml2-debuginfo - addressed in versions 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
python311-libxml2 - addressed in versions 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
python3-libxml2 - addressed in versions 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-devel-32bit - addressed in versions 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-2-64bit - addressed in versions 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
libxml2-2-64bit-debuginfo - addressed in versions 2.9.14-150400.5.22.1, 2.10.3-150500.5.8.1
Custom Metrics Autoscaler Operator for Red Hat OpenShift - update to 2.12.1-376
Red Hat OpenShift distributed tracing (RHOSDT) - update to 3.1.0
TeleControl Server Basic - update to 3.1.2
PowerStore T - update to 3.6.1.2-2315284
Dell EMC PowerStore Family Operating System - update to 4.0.0.0-2284811
OpenShift Data Foundation (formerly OpenShift Container Storage) - update to 4.15.0
RecoverPoint for VMs - update to 6.0.SP1.P1
Red Hat Migration Toolkit for Applications - update to 6.2
Storage Ceph - update to 7.0z1
IBM Qradar SIEM - update to 7.5.0 Update Pack 8 IF01
Dell EMC VxRail Appliance - update to 8.0.120
Index Engines CyberSense - update to 8.4
Security Verify Governance - Identity Manager virtual appliance - update to 10.0.2.0.4
IBM Security Verify Access - update to 10.0.9
IBM Power Hardware Management Console (HMC) - addressed in versions 10.2.1040.0 SP2, 10.3.1060.0
SmartFabric OS10 - addressed in versions 10.5.4.15, 10.5.5.14, 10.5.6.9
Red Hat OpenStack - update to 16.2
IBM Observability with Instana - update to 267

External References

Related Security Bulletins