Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-37q4-89pv-rvxq

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent attackers to cause a denial of service (stack consumption and crash) via an XML schema definition with a large maxOccurs value, which triggers excessive memory consumption during validation of an XML file.

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent attackers to cause a denial of service (stack consumption and crash) via an XML schema definition with a large maxOccurs value, which triggers excessive memory consumption during validation of an XML file.

EPSS

Процентиль: 90%
0.04183
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 18 лет назад

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent attackers to cause a denial of service (stack consumption and crash) via an XML schema definition with a large maxOccurs value, which triggers excessive memory consumption during validation of an XML file.

nvd
почти 18 лет назад

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent attackers to cause a denial of service (stack consumption and crash) via an XML schema definition with a large maxOccurs value, which triggers excessive memory consumption during validation of an XML file.

debian
почти 18 лет назад

The XML parser in Xerces-C++ before 3.0.0 allows context-dependent att ...

EPSS

Процентиль: 90%
0.04183
Низкий

Дефекты

CWE-20