Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-66382

Опубликовано: 28 нояб. 2025
Источник: redhat
CVSS3: 2.9
EPSS Низкий

Описание

In libexpat through 2.7.3, a crafted file with an approximate size of 2 MiB can lead to dozens of seconds of processing time.

A flaw was found in libexpat. This vulnerability allows a denial of service (DoS) by processing a crafted file with an approximate size of 2 MiB, leading to dozens of seconds of processing time.

Отчет

The highest threat of this flaw is to system availability. This issue affects systems that process untrusted XML files with libexpat, where a specially crafted file can lead to extended processing times, potentially causing a denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10expatFix deferred
Red Hat Enterprise Linux 10firefoxFix deferred
Red Hat Enterprise Linux 10thunderbirdFix deferred
Red Hat Enterprise Linux 6compat-expat1Fix deferred
Red Hat Enterprise Linux 6expatFix deferred
Red Hat Enterprise Linux 7expatFix deferred
Red Hat Enterprise Linux 7firefoxFix deferred
Red Hat Enterprise Linux 8expatFix deferred
Red Hat Enterprise Linux 8firefoxFix deferred
Red Hat Enterprise Linux 8mingw-expatFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-407
https://bugzilla.redhat.com/show_bug.cgi?id=2417661libexpat: libexpat: Denial of service via crafted file processing

EPSS

Процентиль: 1%
0.00008
Низкий

2.9 Low

CVSS3

Связанные уязвимости

CVSS3: 2.9
ubuntu
4 месяца назад

In libexpat through 2.7.3, a crafted file with an approximate size of 2 MiB can lead to dozens of seconds of processing time.

CVSS3: 2.9
nvd
4 месяца назад

In libexpat through 2.7.3, a crafted file with an approximate size of 2 MiB can lead to dozens of seconds of processing time.

msrc
4 месяца назад

In libexpat through 2.7.3, a crafted file with an approximate size of 2 MiB can lead to dozens of seconds of processing time.

CVSS3: 2.9
debian
4 месяца назад

In libexpat through 2.7.3, a crafted file with an approximate size of ...

CVSS3: 5.5
redos
21 день назад

Уязвимость expat

EPSS

Процентиль: 1%
0.00008
Низкий

2.9 Low

CVSS3