Описание
libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| expat | fixed | 2.7.5-1 | package |
Примечания
https://github.com/libexpat/libexpat/pull/1158
Fixed by: https://github.com/libexpat/libexpat/commit/5be25657583ea91b09025c858b4785834c20f59c
EPSS
Связанные уязвимости
libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content.
A flaw was found in libexpat. A remote attacker could exploit this vulnerability by providing specially crafted XML content with empty external parameter entities. This could lead to a NULL pointer dereference, causing the application to crash and resulting in a Denial of Service (DoS).
libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content.
libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content.
EPSS