Libexpat Project

Libexpat

65 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.99%
  • Veröffentlicht 26.01.2022 19:15:08
  • Zuletzt bearbeitet 05.05.2025 17:17:59

Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function.

  • EPSS 4.53%
  • Veröffentlicht 24.01.2022 02:15:06
  • Zuletzt bearbeitet 05.05.2025 17:17:58

Expat (aka libexpat) before 2.4.4 has a signed integer overflow in XML_GetBuffer, for configurations with a nonzero XML_CONTEXT_BYTES.

  • EPSS 2.8%
  • Veröffentlicht 10.01.2022 14:12:57
  • Zuletzt bearbeitet 05.05.2025 17:17:53

storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

  • EPSS 2.8%
  • Veröffentlicht 10.01.2022 14:12:57
  • Zuletzt bearbeitet 05.05.2025 17:17:53

nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

  • EPSS 2.64%
  • Veröffentlicht 10.01.2022 14:12:56
  • Zuletzt bearbeitet 05.05.2025 17:17:53

lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

  • EPSS 3.4%
  • Veröffentlicht 10.01.2022 14:12:56
  • Zuletzt bearbeitet 05.05.2025 17:17:53

defineAttribute in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

  • EPSS 3.4%
  • Veröffentlicht 10.01.2022 14:12:56
  • Zuletzt bearbeitet 05.05.2025 17:17:52

build_model in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

  • EPSS 4.83%
  • Veröffentlicht 10.01.2022 14:12:56
  • Zuletzt bearbeitet 05.05.2025 17:17:52

addBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

Exploit
  • EPSS 3.79%
  • Veröffentlicht 06.01.2022 04:15:07
  • Zuletzt bearbeitet 05.05.2025 17:17:28

In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for m_groupSize.

Exploit
  • EPSS 4.23%
  • Veröffentlicht 01.01.2022 19:15:08
  • Zuletzt bearbeitet 05.05.2025 17:17:28

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).