Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-25236

Опубликовано: 19 фев. 2022
Источник: redhat
CVSS3: 9.8
EPSS Низкий

Описание

xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.

A flaw was found in expat. Passing one or more namespace separator characters in the "xmlns[:prefix]" attribute values made expat send malformed tag names to the XML processor on top of expat. This issue causes arbitrary code execution depending on how unexpected cases are handled inside the XML processor.

Отчет

This flaw affects applications that leverage expat to parse untrusted XML files. Applications that only parse trusted XML files or do not process XML files at all are not affected by this flaw. The xmlrpc-c component as shipped with Red Hat Enterprise Linux 8 is not affected by this issue as the issue could not be reproduced in this version.

Меры по смягчению последствий

There is no known mitigation other than restricting applications using the expat library from processing untrusted XML content. Please update the affected packages as soon as possible.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 8firefox:flatpak/firefoxAffected
Red Hat Enterprise Linux 8thunderbird:flatpak/thunderbirdAffected
Red Hat Enterprise Linux 8xmlrpc-cNot affected
Red Hat Enterprise Linux 9expatNot affected
Red Hat Enterprise Linux 9firefoxNot affected
Red Hat Enterprise Linux 9thunderbirdNot affected
Red Hat Enterprise Linux 9xmlrpc-cNot affected
Red Hat Enterprise Linux 6 Extended Lifecycle SupportexpatFixedRHSA-2022:130912.04.2022
Red Hat Enterprise Linux 7firefoxFixedRHSA-2022:082410.03.2022
Red Hat Enterprise Linux 7thunderbirdFixedRHSA-2022:085014.03.2022

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-179
https://bugzilla.redhat.com/show_bug.cgi?id=2056370expat: Namespace-separator characters in "xmlns[:prefix]" attribute values can lead to arbitrary code execution

EPSS

Процентиль: 92%
0.09151
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 3 лет назад

xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.

CVSS3: 9.8
nvd
больше 3 лет назад

xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.

CVSS3: 9.8
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 9.8
debian
больше 3 лет назад

xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to in ...

suse-cvrf
больше 3 лет назад

Security update for expat

EPSS

Процентиль: 92%
0.09151
Низкий

9.8 Critical

CVSS3