Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-32414

Опубликовано: 08 апр. 2025
Источник: nvd
CVSS3: 5.6
CVSS3: 7.5
EPSS Низкий

Описание

In libxml2 before 2.13.8 and 2.14.x before 2.14.2, out-of-bounds memory access can occur in the Python API (Python bindings) because of an incorrect return value. This occurs in xmlPythonFileRead and xmlPythonFileReadRaw because of a difference between bytes and characters.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:xmlsoft:libxml2:*:*:*:*:*:*:*:*
Версия до 2.13.8 (исключая)
cpe:2.3:a:xmlsoft:libxml2:*:*:*:*:*:*:*:*
Версия от 2.14.0 (включая) до 2.14.2 (исключая)

EPSS

Процентиль: 3%
0.00017
Низкий

5.6 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-393
CWE-252

Связанные уязвимости

CVSS3: 5.6
ubuntu
2 месяца назад

In libxml2 before 2.13.8 and 2.14.x before 2.14.2, out-of-bounds memory access can occur in the Python API (Python bindings) because of an incorrect return value. This occurs in xmlPythonFileRead and xmlPythonFileReadRaw because of a difference between bytes and characters.

CVSS3: 5.6
redhat
2 месяца назад

In libxml2 before 2.13.8 and 2.14.x before 2.14.2, out-of-bounds memory access can occur in the Python API (Python bindings) because of an incorrect return value. This occurs in xmlPythonFileRead and xmlPythonFileReadRaw because of a difference between bytes and characters.

CVSS3: 7.5
msrc
23 дня назад

Описание отсутствует

CVSS3: 5.6
debian
2 месяца назад

In libxml2 before 2.13.8 and 2.14.x before 2.14.2, out-of-bounds memor ...

CVSS3: 7.5
redos
около 2 месяцев назад

Уязвимость python2-libxml2

EPSS

Процентиль: 3%
0.00017
Низкий

5.6 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-393
CWE-252