Lucene search

K
redhatRedHatRHSA-2016:2824
HistoryNov 28, 2016 - 5:50 p.m.

(RHSA-2016:2824) Moderate: expat security update

2016-11-2817:50:20
access.redhat.com
109

EPSS

0.008

Percentile

81.9%

Expat is a C library for parsing XML documents.

Security Fix(es):

  • An out-of-bounds read flaw was found in the way Expat processed certain input. A remote attacker could send specially crafted XML that, when parsed by an application using the Expat library, would cause that application to crash or, possibly, execute arbitrary code with the permission of the user running the application. (CVE-2016-0718)

Red Hat would like to thank Gustavo Grieco for reporting this issue.