New! Vulnerability Priority Rating (VPR)
Tenable calculates a dynamic VPR for every vulnerability. VPR combines vulnerability information with threat intelligence and machine learning algorithms to predict which vulnerabilities are most likely to be exploited in attacks. Read more about what VPR is and how it's different from CVSS.
VPR Score: 6
SynopsisThe remote FreeBSD host is missing a security-related update.
CVE-2015-5312 Another entity expansion issue (David Drysdale).
CVE-2015-7497 Avoid an heap buffer overflow in xmlDictComputeFastQKey (David Drysdale).
CVE-2015-7498 Avoid processing entities after encoding conversion failures (Daniel Veillard).
CVE-2015-7499 (1) Add xmlHaltParser() to stop the parser (Daniel Veillard).
CVE-2015-7499 (2) Detect incoherency on GROW (Daniel Veillard).
CVE-2015-7500 Fix memory access error due to incorrect entities boundaries (Daniel Veillard).
CVE-2015-7941 (1) Stop parsing on entities boundaries errors (Daniel Veillard).
CVE-2015-7941 (2) Cleanup conditional section error handling (Daniel Veillard).
CVE-2015-7942 Another variation of overflow in Conditional sections (Daniel Veillard).
CVE-2015-7942 (2) Fix an error in previous Conditional section patch (Daniel Veillard).
CVE-2015-8035 Fix XZ compression support loop (Daniel Veillard).
CVE-2015-8242 Buffer overead with HTML parser in push mode (Hugh Davenport)
SolutionUpdate the affected package.