Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-56404

Опубликовано: 21 июн. 2026
Источник: redhat
CVSS3: 6.9
EPSS Низкий

Описание

libexpat before 2.8.2 has an integer overflow in addBinding.

A flaw was found in libexpat. This vulnerability, an integer overflow in the addBinding function, could allow a local attacker to execute arbitrary code. By exploiting this, an attacker could gain control over the affected system, compromising its confidentiality and integrity.

Отчет

This Moderate impact flaw in libexpat, an XML parsing library, could lead to arbitrary code execution through an integer overflow in the addBinding function. Exploitation requires local access and high attack complexity, which limits its immediate risk in standard Red Hat deployments. The vulnerability primarily affects applications that process untrusted XML data.

Меры по смягчению последствий

Do not process untrusted or unvalidated XML with libexpat-based applications. Enforce strict maximum size limits on XML input and namespace URI lengths before parsing

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10expatFix deferred
Red Hat Enterprise Linux 10firefoxFix deferred
Red Hat Enterprise Linux 10thunderbirdFix deferred
Red Hat Enterprise Linux 6compat-expat1Out of support scope
Red Hat Enterprise Linux 6expatOut of support scope
Red Hat Enterprise Linux 7expatOut of support scope
Red Hat Enterprise Linux 7firefoxOut of support scope
Red Hat Enterprise Linux 8expatFix deferred
Red Hat Enterprise Linux 8firefoxFix deferred
Red Hat Enterprise Linux 8mingw-expatFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2491185libexpat: libexpat: Arbitrary Code Execution via integer overflow in addBinding

EPSS

Процентиль: 3%
0.00125
Низкий

6.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.9
ubuntu
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in addBinding.

CVSS3: 6.9
nvd
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in addBinding.

CVSS3: 6.9
msrc
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in addBinding.

CVSS3: 6.9
debian
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in addBinding.

CVSS3: 6.9
github
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in addBinding.

EPSS

Процентиль: 3%
0.00125
Низкий

6.9 Medium

CVSS3

Уязвимость CVE-2026-56404