Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-56405

Опубликовано: 21 июн. 2026
Источник: redhat
CVSS3: 4.9
EPSS Низкий

Описание

libexpat before 2.8.2 has an integer overflow in getAttributeId.

A flaw was found in libexpat. An integer overflow vulnerability exists within the getAttributeId function. This flaw could allow an attacker to potentially disclose sensitive information or execute arbitrary code, leading to a compromise of the system's integrity and confidentiality.

Отчет

The moderate vulnerability in libexpat's getAttributeId function could allow a local attacker to achieve information disclosure or arbitrary code execution due to an integer overflow. The high attack complexity and local access required inherently mitigate the opportunity for successful exploitation. However, successful exploitation could compromise system integrity and confidentiality in Red Hat products that process untrusted XML input using libexpat.

Меры по смягчению последствий

To mitigate this issue, Red Hat recommends avoiding the processing of untrusted or unvalidated XML input with applications utilizing libexpat. Implementing strict input validation and sanitization for all XML data originating from untrusted sources can reduce the risk of exploitation. This operational control helps prevent the vulnerable getAttributeId function from processing malicious input.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Exploit Intelligenceexploit-intelligence-tech-preview/vulnerability-analysis-rhel9Fix deferred
Red Hat Ansible Automation Platform 2ansible-automation-platform-26/lightspeed-chatbot-rhel9Fix deferred
Red Hat Ansible Automation Platform 2ansible-automation-platform-27/lightspeed-chatbot-rhel9Fix deferred
Red Hat Enterprise Linux 10expatFix deferred
Red Hat Enterprise Linux 6compat-expat1Fix deferred
Red Hat Enterprise Linux 6expatFix deferred
Red Hat Enterprise Linux 7expatFix deferred
Red Hat Enterprise Linux 8expatFix deferred
Red Hat Enterprise Linux 8mingw-expatFix deferred
Red Hat Enterprise Linux 9expatFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2491188libexpat: libexpat: Information disclosure and arbitrary code execution via integer overflow

EPSS

Процентиль: 3%
0.00125
Низкий

4.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.9
ubuntu
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in getAttributeId.

CVSS3: 6.9
nvd
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in getAttributeId.

CVSS3: 6.9
msrc
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in getAttributeId.

CVSS3: 6.9
debian
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in getAttributeId.

CVSS3: 6.9
github
около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in getAttributeId.

EPSS

Процентиль: 3%
0.00125
Низкий

4.9 Medium

CVSS3