Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-1148

Опубликовано: 03 июл. 2012
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

Memory leak in the poolGrow function in expat/lib/xmlparse.c in expat before 2.1.0 allows context-dependent attackers to cause a denial of service (memory consumption) via a large number of crafted XML files that cause improperly-handled reallocation failures when expanding entities.

РелизСтатусПримечание
artful

not-affected

code-not-compiled
bionic

not-affected

code-not-compiled
cosmic

not-affected

code-not-compiled
devel

not-affected

code-not-compiled
disco

not-affected

code-not-compiled
eoan

not-affected

code-not-compiled
esm-infra-legacy/trusty

not-affected

code-not-compiled
esm-infra/bionic

not-affected

code-not-compiled
esm-infra/focal

not-affected

code-not-compiled
esm-infra/xenial

not-affected

code-not-compiled

Показывать по

РелизСтатусПримечание
artful

not-affected

code-not-compiled
bionic

not-affected

code-not-compiled
cosmic

not-affected

code-not-compiled
devel

not-affected

code-not-compiled
disco

not-affected

code-not-compiled
eoan

not-affected

code-not-compiled
esm-infra-legacy/trusty

not-affected

code-not-compiled
esm-infra/bionic

not-affected

code-not-compiled
esm-infra/focal

not-affected

code-not-compiled
esm-infra/xenial

not-affected

code-not-compiled

Показывать по

РелизСтатусПримечание
artful

not-affected

uses system expat
bionic

not-affected

uses system expat
cosmic

not-affected

uses system expat
devel

not-affected

uses system expat
disco

not-affected

uses system expat
eoan

not-affected

uses system expat
esm-apps/bionic

not-affected

uses system expat
esm-apps/focal

not-affected

uses system expat
esm-apps/jammy

not-affected

uses system expat
esm-apps/noble

not-affected

uses system expat

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-apps/xenial

needed

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
esm-infra/focal

DNE

focal

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-apps/xenial

needed

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
esm-infra/focal

DNE

focal

DNE

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

needed

disco

ignored

end of life
eoan

ignored

end of life
esm-apps/bionic

needed

esm-apps/focal

needed

esm-apps/jammy

needed

esm-apps/noble

needed

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

not-affected

code-not-compiled
bionic

not-affected

code-not-compiled
cosmic

not-affected

code-not-compiled
devel

not-affected

code-not-compiled
disco

not-affected

code-not-compiled
eoan

not-affected

code-not-compiled
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was ignored [code-not-compiled]]
esm-infra/bionic

not-affected

code-not-compiled
esm-infra/focal

not-affected

code-not-compiled
esm-infra/xenial

not-affected

code-not-compiled

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

not-affected

disco

not-affected

eoan

not-affected

esm-apps/bionic

needed

esm-apps/focal

not-affected

esm-apps/jammy

not-affected

esm-apps/noble

not-affected

Показывать по

РелизСтатусПримечание
artful

not-affected

2.1.0-1
bionic

not-affected

2.1.0-1
cosmic

not-affected

2.1.0-1
devel

not-affected

2.1.0-1
disco

not-affected

2.1.0-1
eoan

not-affected

2.1.0-1
esm-infra-legacy/trusty

not-affected

2.1.0-1
esm-infra/bionic

not-affected

2.1.0-1
esm-infra/focal

not-affected

2.1.0-1
esm-infra/xenial

not-affected

2.1.0-1

Показывать по

РелизСтатусПримечание
artful

not-affected

uses system expat
bionic

not-affected

uses system expat
cosmic

not-affected

uses system expat
devel

not-affected

uses system expat
disco

not-affected

uses system expat
eoan

not-affected

uses system expat
esm-apps/bionic

not-affected

uses system expat
esm-apps/focal

not-affected

uses system expat
esm-apps/jammy

not-affected

uses system expat
esm-apps/noble

not-affected

uses system expat

Показывать по

РелизСтатусПримечание
artful

not-affected

code-not-compiled
bionic

not-affected

code-not-compiled
cosmic

not-affected

code-not-compiled
devel

not-affected

code-not-compiled
disco

not-affected

code-not-compiled
eoan

not-affected

code-not-compiled
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was ignored [code-not-compiled]]
esm-infra/bionic

not-affected

code-not-compiled
esm-infra/focal

not-affected

code-not-compiled
esm-infra/xenial

not-affected

code-not-compiled

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-apps/xenial

needed

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
esm-infra/focal

DNE

focal

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

released

1.2-4.1ubuntu4
esm-apps/bionic

released

1.2-4ubuntu0.18.04.1~esm5
esm-apps/focal

released

1.2-4ubuntu0.20.04.1~esm5
esm-apps/jammy

released

1.2-4ubuntu0.22.04.1~esm5
esm-apps/noble

released

1.2-4.1ubuntu2.24.0.4.1+esm3
esm-apps/xenial

released

1.2-3ubuntu0.16.04.1~esm2
focal

ignored

end of standard support, was needed
hirsute

ignored

end of life
impish

ignored

end of life

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

ignored

disco

ignored

end of life
eoan

ignored

end of life
esm-apps/bionic

ignored

esm-apps/focal

ignored

esm-apps/jammy

ignored

esm-apps/noble

ignored

Показывать по

РелизСтатусПримечание
artful

not-affected

uses system expat
bionic

not-affected

uses system expat
cosmic

not-affected

uses system expat
devel

needs-triage

disco

not-affected

uses system expat
eoan

not-affected

uses system expat
esm-apps/bionic

not-affected

uses system expat
esm-apps/focal

not-affected

uses system expat
esm-apps/jammy

not-affected

uses system expat
esm-apps/noble

not-affected

uses system expat

Показывать по

РелизСтатусПримечание
artful

not-affected

uses system expat
bionic

not-affected

uses system expat
cosmic

not-affected

uses system expat
devel

not-affected

uses system expat
disco

not-affected

uses system expat
eoan

not-affected

uses system expat
esm-apps/bionic

not-affected

uses system expat
esm-apps/focal

not-affected

uses system expat
esm-apps/jammy

not-affected

uses system expat
esm-apps/noble

not-affected

uses system expat

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

not-affected

uses system expat
bionic

not-affected

uses system expat
cosmic

not-affected

uses system expat
devel

not-affected

uses system expat
disco

not-affected

uses system expat
eoan

not-affected

uses system expat
esm-apps/bionic

not-affected

uses system expat
esm-apps/focal

not-affected

uses system expat
esm-apps/jammy

not-affected

uses system expat
esm-apps/noble

not-affected

uses system expat

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

uses system expat
cosmic

not-affected

uses system expat
devel

needs-triage

disco

not-affected

uses system expat
eoan

not-affected

uses system expat
esm-apps/bionic

not-affected

uses system expat
esm-apps/focal

not-affected

uses system expat
esm-apps/jammy

not-affected

uses system expat
esm-apps/xenial

not-affected

uses system expat

Показывать по

РелизСтатусПримечание
artful

not-affected

code-not-compiled
bionic

not-affected

code-not-compiled
cosmic

not-affected

code-not-compiled
devel

DNE

disco

not-affected

code-not-compiled
eoan

not-affected

code-not-compiled
esm-apps/bionic

not-affected

code-not-compiled
esm-apps/xenial

not-affected

code-not-compiled
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was ignored [code-not-compiled]]
esm-infra/focal

DNE

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

needed

disco

ignored

end of life
eoan

ignored

end of life
esm-apps/bionic

needed

esm-apps/focal

needed

esm-apps/jammy

needed

esm-apps/noble

needed

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

cosmic

not-affected

devel

not-affected

disco

not-affected

eoan

not-affected

esm-apps/bionic

not-affected

esm-apps/focal

not-affected

esm-apps/jammy

not-affected

esm-apps/noble

not-affected

Показывать по

РелизСтатусПримечание
artful

not-affected

code-not-compiled
bionic

not-affected

code-not-compiled
cosmic

not-affected

code-not-compiled
devel

not-affected

code-not-compiled
disco

not-affected

code-not-compiled
eoan

not-affected

code-not-compiled
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was ignored [code-not-compiled]]
esm-infra/bionic

not-affected

code-not-compiled
esm-infra/focal

not-affected

code-not-compiled
esm-infra/xenial

not-affected

code-not-compiled

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

1.3.5+dfsg-15
cosmic

not-affected

1.3.5+dfsg-15
devel

not-affected

1.3.5+dfsg-15
disco

not-affected

1.3.5+dfsg-15
eoan

not-affected

1.3.5+dfsg-15
esm-apps/bionic

not-affected

1.3.5+dfsg-15
esm-apps/focal

not-affected

1.3.5+dfsg-15
esm-apps/jammy

not-affected

1.3.5+dfsg-15
esm-apps/noble

not-affected

1.3.5+dfsg-15

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

cosmic

ignored

devel

DNE

disco

ignored

eoan

ignored

esm-apps/bionic

ignored

esm-apps/xenial

ignored

esm-infra-legacy/trusty

ignored

esm-infra/focal

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-apps/xenial

not-affected

uses system expat
esm-infra-legacy/trusty

not-affected

uses system expat
esm-infra/focal

DNE

focal

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

uses system expat
cosmic

not-affected

uses system expat
devel

not-affected

uses system expat
disco

not-affected

uses system expat
eoan

not-affected

uses system expat
esm-apps/bionic

not-affected

uses system expat
esm-apps/focal

not-affected

uses system expat
esm-apps/jammy

not-affected

uses system expat
esm-apps/noble

not-affected

uses system expat

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [uses system expat]]
esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

РелизСтатусПримечание
artful

released

1.16.33-3.1ubuntu6
bionic

released

1.16.33-3.1ubuntu6
cosmic

released

1.16.33-3.1ubuntu6
devel

released

1.16.33-3.1ubuntu6
disco

released

1.16.33-3.1ubuntu6
eoan

released

1.16.33-3.1ubuntu6
esm-apps/bionic

released

1.16.33-3.1ubuntu6
esm-apps/focal

released

1.16.33-3.1ubuntu6
esm-apps/jammy

released

1.16.33-3.1ubuntu6
esm-apps/noble

released

1.16.33-3.1ubuntu6

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

1.6.5-1.2
cosmic

ignored

end of life
devel

not-affected

1.6.5-1.2
disco

ignored

end of life
eoan

ignored

end of life
esm-apps/bionic

not-affected

1.6.5-1.2
esm-apps/focal

not-affected

1.6.5-1.2
esm-apps/jammy

not-affected

1.6.5-1.2
esm-apps/noble

not-affected

1.6.5-1.2

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

Показывать по

EPSS

Процентиль: 79%
0.01368
Низкий

5 Medium

CVSS2

Связанные уязвимости

CVSS3: 7.5
redhat
больше 13 лет назад

Memory leak in the poolGrow function in expat/lib/xmlparse.c in expat before 2.1.0 allows context-dependent attackers to cause a denial of service (memory consumption) via a large number of crafted XML files that cause improperly-handled reallocation failures when expanding entities.

nvd
почти 13 лет назад

Memory leak in the poolGrow function in expat/lib/xmlparse.c in expat before 2.1.0 allows context-dependent attackers to cause a denial of service (memory consumption) via a large number of crafted XML files that cause improperly-handled reallocation failures when expanding entities.

debian
почти 13 лет назад

Memory leak in the poolGrow function in expat/lib/xmlparse.c in expat ...

github
около 3 лет назад

Memory leak in the poolGrow function in expat/lib/xmlparse.c in expat before 2.1.0 allows context-dependent attackers to cause a denial of service (memory consumption) via a large number of crafted XML files that cause improperly-handled reallocation failures when expanding entities.

oracle-oval
около 13 лет назад

ELSA-2012-0731: expat security update (MODERATE)

EPSS

Процентиль: 79%
0.01368
Низкий

5 Medium

CVSS2