Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-45491
HistorySep 03, 2024 - 12:00 a.m.

CVE-2024-45491

2024-09-0300:00:00
ubuntu.com
ubuntu.com
9
vulnerability
integer overflow
libexpat
xmlparse.c
32-bit platforms
system expat
apache2
apr-util
cmake
ghostscript
firefox

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

7.6

Confidence

High

EPSS

0.001

Percentile

39.7%

An issue was discovered in libexpat before 2.6.3. dtdCopy in xmlparse.c can
have an integer overflow for nDefaultAtts on 32-bit platforms (where
UINT_MAX equals SIZE_MAX).

Bugs

Notes

Author Note
sbeattie paraview uses system expat xotcl uses system expat poco uses system expat gdcm uses system expat audacity uses system expat simgear uses system expat coin3 uses system expat as of 4.0.0~CMake~6f54f1602475+ds1-1 sitecopy uses system expat since 1:0.16.0-1 (dapper!) insighttoolkit uses system expat as of 4.12.1-dfsg1
mdeslaur apache2 uses system expat apr-util uses system expat cmake uses system expat ghostscript uses system expat firefox uses system expat

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

7.6

Confidence

High

EPSS

0.001

Percentile

39.7%