Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pfmv-2r4f-j9mj

Опубликовано: 10 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

EPSS

Процентиль: 88%
0.04869
Низкий

8.8 High

CVSS3

Дефекты

CWE-400
CWE-682

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 4 года назад

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

CVSS3: 8.8
redhat
почти 4 года назад

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

CVSS3: 8.8
nvd
почти 4 года назад

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

CVSS3: 8.8
msrc
почти 4 года назад

In Expat (aka libexpat) before 2.4.3 a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g. allocating too few bytes or only freeing memory).

CVSS3: 8.8
debian
почти 4 года назад

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) pla ...

EPSS

Процентиль: 88%
0.04869
Низкий

8.8 High

CVSS3

Дефекты

CWE-400
CWE-682