Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-37q4-89pv-rvxq

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent attackers to cause a denial of service (stack consumption and crash) via an XML schema definition with a large maxOccurs value, which triggers excessive memory consumption during validation of an XML file.

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent attackers to cause a denial of service (stack consumption and crash) via an XML schema definition with a large maxOccurs value, which triggers excessive memory consumption during validation of an XML file.

EPSS

Процентиль: 83%
0.01995
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 17 лет назад

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent attackers to cause a denial of service (stack consumption and crash) via an XML schema definition with a large maxOccurs value, which triggers excessive memory consumption during validation of an XML file.

nvd
больше 17 лет назад

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent attackers to cause a denial of service (stack consumption and crash) via an XML schema definition with a large maxOccurs value, which triggers excessive memory consumption during validation of an XML file.

debian
больше 17 лет назад

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent att ...

EPSS

Процентиль: 83%
0.01995
Низкий

Дефекты

CWE-20