Lucene search

K
osvGoogleOSV:DLA-433-1
HistoryFeb 25, 2016 - 12:00 a.m.

xerces-c - security update

2016-02-2500:00:00
Google
osv.dev
10

0.031 Low

EPSS

Percentile

91.1%

Gustavo Grieco discovered that xerces-c, a validating XML parser library
for C++, mishandles certain kinds of malformed input documents,
resulting in buffer overflows during processing and error reporting.
These flaws could lead to a denial of service in applications using the
xerces-c library, or potentially, to the execution of arbitrary code.

CPENameOperatorVersion
xerces-ceq3.1.1-1