CVE-2009-3627
Publication date 29 October 2009
Last updated 24 July 2024
Ubuntu priority
The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.
Status
Package | Ubuntu Release | Status |
---|---|---|
libhtml-parser-perl | ||
References
Related Ubuntu Security Notices (USN)
- USN-855-1
- libhtml-parser-perl vulnerability
- 5 November 2009