60
CVE-2016-0718
—CVSS 3.1
9.8 critical
EPSS
13%p96
Published
()
Modified
Description
Expat allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a malformed input document, which triggers a buffer overflow.
- Vendors
- mozillaapplesuseopensusecanonicallibexpat projectdebianmcafeepython
- Products
- firefox, mac os x, linux enterprise debuginfo, studio onsite, linux enterprise server, linux enterprise software development kit, leap, linux enterprise desktop, ubuntu linux, libexpat, debian linux, opensuse
- Weakness
- CWE-119
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H