CVE-2016-4571: Debian Linux
Medium severity, CVSS 5.5. EPSS: 1.6% chance of exploitation in the next 30 days.
The mxml_write_node function in mxml-file.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (stack consumption) via crafted xml file.
Affected products
- Debian Debian Linux: version 8.0 only
- Mini-XML Project Mini-XML: up to and including 2.7; version 2.9 only
Published 2017-02-03. Last modified 2026-06-17.