ZeroHour

CVE-2022-25315

PoC
CVSS 3.1
9.8 critical
EPSS
5%p91
Published
()
Modified
Description

In Expat (aka libexpat) before 2.4.5, there is an integer overflow in storeRawNames.

Vendors
libexpat projectdebianfedoraprojectoraclesiemens
Products
libexpat, debian linux, fedora, http server, zfs storage appliance kit, sinema remote connect server
Weakness
CWE-190
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.