Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33582
HistoryJan 11, 2022 - 6:52 a.m.

Integer Overflow

2022-01-1106:52:01
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18

0.008 Low

EPSS

Percentile

82.0%

libexpat.so is vulnerable to Integer Overflow. The vulnerability exists because the defineAttribute function of xmlparse.c doesn’t check the input length which allows an attacker to leverage an overflow causing an application crash.