Описание
libexpat before 2.8.2 has an integer overflow in getAttributeId.
A flaw was found in libexpat. An integer overflow vulnerability exists within the getAttributeId function. This flaw could allow an attacker to potentially disclose sensitive information or execute arbitrary code, leading to a compromise of the system's integrity and confidentiality.
Отчет
The moderate vulnerability in libexpat's getAttributeId function could allow a local attacker to achieve information disclosure or arbitrary code execution due to an integer overflow. The high attack complexity and local access required inherently mitigate the opportunity for successful exploitation. However, successful exploitation could compromise system integrity and confidentiality in Red Hat products that process untrusted XML input using libexpat.
Меры по смягчению последствий
To mitigate this issue, Red Hat recommends avoiding the processing of untrusted or unvalidated XML input with applications utilizing libexpat. Implementing strict input validation and sanitization for all XML data originating from untrusted sources can reduce the risk of exploitation. This operational control helps prevent the vulnerable getAttributeId function from processing malicious input.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Exploit Intelligence | exploit-intelligence-tech-preview/vulnerability-analysis-rhel9 | Fix deferred | ||
| Red Hat Ansible Automation Platform 2 | ansible-automation-platform-26/lightspeed-chatbot-rhel9 | Fix deferred | ||
| Red Hat Ansible Automation Platform 2 | ansible-automation-platform-27/lightspeed-chatbot-rhel9 | Fix deferred | ||
| Red Hat Enterprise Linux 10 | expat | Fix deferred | ||
| Red Hat Enterprise Linux 6 | compat-expat1 | Fix deferred | ||
| Red Hat Enterprise Linux 6 | expat | Fix deferred | ||
| Red Hat Enterprise Linux 7 | expat | Fix deferred | ||
| Red Hat Enterprise Linux 8 | expat | Fix deferred | ||
| Red Hat Enterprise Linux 8 | mingw-expat | Fix deferred | ||
| Red Hat Enterprise Linux 9 | expat | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
4.9 Medium
CVSS3
Связанные уязвимости
libexpat before 2.8.2 has an integer overflow in getAttributeId.
libexpat before 2.8.2 has an integer overflow in getAttributeId.
libexpat before 2.8.2 has an integer overflow in getAttributeId.
libexpat before 2.8.2 has an integer overflow in getAttributeId.
libexpat before 2.8.2 has an integer overflow in getAttributeId.
EPSS
4.9 Medium
CVSS3