CVE-2022-23852
—CVSS 3.1
9.8 critical
EPSS
5%p91
Published
()
Modified
Description
Expat (aka libexpat) before 2.4.4 has a signed integer overflow in XML_GetBuffer, for configurations with a nonzero XML_CONTEXT_BYTES.
In the news0 stories
No ingested article mentions this CVE yet.