Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r983-27x9-gfq4

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.

The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.

EPSS

Процентиль: 72%
0.00726
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
около 16 лет назад

The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.

redhat
около 16 лет назад

The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.

nvd
около 16 лет назад

The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.

debian
около 16 лет назад

The decode_entities function in util.c in HTML-Parser before 3.63 allo ...

EPSS

Процентиль: 72%
0.00726
Низкий

Дефекты

CWE-20