Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pfmv-2r4f-j9mj

Опубликовано: 10 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

EPSS

Процентиль: 57%
0.00355
Низкий

8.8 High

CVSS3

Дефекты

CWE-400
CWE-682

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 3 лет назад

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

CVSS3: 8.8
redhat
больше 3 лет назад

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

CVSS3: 8.8
nvd
больше 3 лет назад

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

CVSS3: 8.8
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 8.8
debian
больше 3 лет назад

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) pla ...

EPSS

Процентиль: 57%
0.00355
Низкий

8.8 High

CVSS3

Дефекты

CWE-400
CWE-682