Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-18355
HistoryFeb 22, 2022 - 12:00 a.m.

Expat integer overflow vulnerability (CNVD-2022-18355)

2022-02-2200:00:00
China National Vulnerability Database
www.cnvd.org.cn
15
expat
xml parser
integer overflow

EPSS

0.025

Percentile

90.3%

Expat is a fast streaming XML parser written in C. An integer overflow vulnerability exists prior to Expat 2.4.5, which stems from the presence of an integer overflow in storeRawNames. No detailed vulnerability details are currently available.