Lucene search

K
archlinuxArch LinuxASA-201607-2
HistoryJul 05, 2016 - 12:00 a.m.

xerces-c: denial of service

2016-07-0500:00:00
Arch Linux
lists.archlinux.org
20

0.007 Low

EPSS

Percentile

81.1%

The Xerces-C XML parser fails to successfully parse a DTD that is
deeply nested, and this causes a stack overflow, which makes a denial
of service attack against many applications possible by an
unauthenticated attacker.

OSVersionArchitecturePackageVersionFilename
anyanyanyxerces-c< 3.1.4-1UNKNOWN