Buffer overflow in libxml2 allows remote attackers to execute arbitrary code by leveraging an incorrect limit for port values when handling redirects.
https://www.debian.org/security/2017/dsa-3952
https://source.android.com/security/bulletin/2017-06-01
https://git.gnome.org/browse/libxml2/commit/?id=5dca9eea1bd4263bfa4d037ab2443de1cd730f7e
https://bugzilla.redhat.com/show_bug.cgi?id=1462216