[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252271

 
 

909

 
 

196835

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2018-20004 -- mxml

ID: oval:org.secpod.oval:def:2001168Date: (C)2019-04-22   (M)2023-11-13
Class: VULNERABILITYFamily: unix




An issue has been found in Mini-XML 2.12. It is a stack-based buffer overflow in mxml_write_node in mxml-file.c via vectors involving a double-precision floating point number and the "<order type="real">" substring, as demonstrated by testmxml.

Platform:
Debian 8.x
Debian 9.x
Product:
libmxml-dev
Reference:
CVE-2018-20004
CVE    1
CVE-2018-20004
CPE    4
cpe:/o:debian:debian_linux:8.x
cpe:/a:xmlsoft:libmxml-dev
cpe:/o:debian:debian_linux:9.x
cpe:/o:debian:debian_linux:8.0
...

© SecPod Technologies