{"id":"CVE-2016-4570","details":"The mxmlDelete function in mxml-node.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (stack consumption) via crafted xml file.","modified":"2026-05-15T12:02:49.575785368Z","published":"2017-02-03T15:59:00.320Z","related":["SUSE-SU-2017:3060-1","openSUSE-SU-2024:10530-1"],"database_specific":{"unresolved_ranges":[{"cpes":["cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"],"source":"CPE_FIELD","extracted_events":[{"last_affected":"8.0"}],"vendor_product":"debian:debian_linux"}]},"references":[{"type":"ADVISORY","url":"http://www.openwall.com/lists/oss-security/2016/05/09/16"},{"type":"ADVISORY","url":"http://www.openwall.com/lists/oss-security/2016/05/11/14"},{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/90315"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2019/01/msg00018.html"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1334648"}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"}]}