Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-76956

Опубликовано: 20 авг. 2026
Источник: redhat
CVSS3: 5.9

Описание

In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in being vulnerable to hash flooding attacks, causing a denial of service via crafted XML content.

A flaw was found in libexpat. This vulnerability arises from the software misinterpreting a return code, leading to insufficient randomness (entropy) for hash functions. A remote attacker could exploit this by sending specially crafted XML content, triggering hash flooding attacks. This can result in a denial of service (DoS), making the affected system or application unavailable to legitimate users.

Отчет

Red Hat ships libexpat (packaged as "expat") across many products. This vulnerability was introduced in libexpat 2.8.2. Most Red Hat products ship expat versions prior to 2.8.2 and are therefore not affected. Only products shipping expat 2.8.2 or 2.8.3 are vulnerable to this hash flooding denial of service.

Меры по смягчению последствий

There is no mitigation for this flaw other than updating to libexpat 2.8.4 or later.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10expatNot affected
Red Hat Enterprise Linux 10firefoxNot affected
Red Hat Enterprise Linux 10thunderbirdNot affected
Red Hat Enterprise Linux 6compat-expat1Not affected
Red Hat Enterprise Linux 6expatNot affected
Red Hat Enterprise Linux 7expatNot affected
Red Hat Enterprise Linux 7firefoxNot affected
Red Hat Enterprise Linux 8expatNot affected
Red Hat Enterprise Linux 8firefoxNot affected
Red Hat Enterprise Linux 8mingw-expatNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-331
https://bugzilla.redhat.com/show_bug.cgi?id=2520124libexpat: libexpat: Denial of Service via hash flooding attack with crafted XML

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
ubuntu
29 дней назад

In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in being vulnerable to hash flooding attacks, causing a denial of service via crafted XML content.

CVSS3: 5.9
nvd
29 дней назад

In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in being vulnerable to hash flooding attacks, causing a denial of service via crafted XML content.

msrc
27 дней назад

In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in being vulnerable to hash flooding attacks, causing a denial of service via crafted XML content.

CVSS3: 5.9
debian
29 дней назад

In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentr ...

CVSS3: 7.5
github
28 дней назад

In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in being vulnerable to hash flooding attacks, causing a denial of service via crafted XML content.

5.9 Medium

CVSS3