Security Advisory

CVE-2016-9181

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-12-22 21:00:00
Last updated 2024-08-06 02:42:11
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

perl-Image-Info: When parsing an SVG file, external entity expansion (XXE) was not disabled. An attacker could craft an SVG file which, when processed by an application using perl-Image-Info, could cause denial of service or, potentially, information disclosure.