Lucene search

K
archlinuxArch LinuxASA-201606-22
HistoryJun 25, 2016 - 12:00 a.m.

xerces-c: arbitrary code execution

2016-06-2500:00:00
Arch Linux
lists.archlinux.org
28

0.004 Low

EPSS

Percentile

72.8%

The DTDScanner fails to account for the fact that peeking characters in
the XMLReader class can raise an exception if an invalid character is
encountered, and the exception crosses stack frames in an unsafe way
that causes a higher level exception handler to access an already-freed
object.

OSVersionArchitecturePackageVersionFilename
anyanyanyxerces-c< 3.1.3-2UNKNOWN