ZeroHour

CVE-2016-0718

CVSS 3.1
9.8 critical
EPSS
13%p96
Published
()
Modified
Description

Expat allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a malformed input document, which triggers a buffer overflow.

Vendors
mozillaapplesuseopensusecanonicallibexpat projectdebianmcafeepython
Products
firefox, mac os x, linux enterprise debuginfo, studio onsite, linux enterprise server, linux enterprise software development kit, leap, linux enterprise desktop, ubuntu linux, libexpat, debian linux, opensuse
Weakness
CWE-119
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news