Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-72522

Опубликовано: 10 авг. 2026
Источник: debian
EPSS Низкий

Описание

libexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same as high surrogates during Unicode processing in the *_toUtf16 functions.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
expatfixed2.8.3-1package

Примечания

  • https://github.com/libexpat/libexpat/pull/1296

  • https://bugzilla.mozilla.org/show_bug.cgi?id=2053153

EPSS

Процентиль: 7%
0.00176
Низкий

Связанные уязвимости

CVSS3: 6.2
ubuntu
19 дней назад

libexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same as high surrogates during Unicode processing in the *_toUtf16 functions.

CVSS3: 6.2
redhat
19 дней назад

libexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same as high surrogates during Unicode processing in the *_toUtf16 functions.

CVSS3: 6.2
nvd
19 дней назад

libexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same as high surrogates during Unicode processing in the *_toUtf16 functions.

CVSS3: 6.2
msrc
18 дней назад

libexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same as high surrogates during Unicode processing in the *_toUtf16 functions.

CVSS3: 6.2
github
19 дней назад

libexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same as high surrogates during Unicode processing in the *_toUtf16 functions.

EPSS

Процентиль: 7%
0.00176
Низкий