[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2022-1759 --- expat

ID: oval:org.secpod.oval:def:1700868Date: (C)2022-03-11   (M)2024-01-23
Class: PATCHFamily: unix




An integer overflow was found in expat. The issue occurs in storeRawNames by abusing the m_buffer expansion logic to allow allocations very close to INT_MAX and out-of-bounds heap writes. This flaw can cause a denial of service or potentially arbitrary code execution

Platform:
Amazon Linux 2
Product:
expat
Reference:
ALAS2-2022-1759
CVE-2022-25315
CVE    1
CVE-2022-25315
CPE    2
cpe:/a:libexpat:expat
cpe:/o:amazon:linux:2

© SecPod Technologies