Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-18354
HistoryFeb 22, 2022 - 12:00 a.m.

Expat has an unspecified vulnerability (CNVD-2022-18354)

2022-02-2200:00:00
China National Vulnerability Database
www.cnvd.org.cn
12

0.006 Low

EPSS

Percentile

79.4%

Expat is a fast streaming XML parser written in C. A security vulnerability existed prior to Expat 2.4.5, which could be exploited by an attacker to trigger stack exhaustion in build_model via a large nesting depth in the DTD element.

CPENameOperatorVersion
expat expatlt2.4.5