PT-2009-1105 · Expat+5 · Expat+5
Publicado
2009-01-17
·
Atualizado
2024-06-15
·
CVE-2009-3720
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Expat versions prior to 2.1.0 beta3
Description
The issue is related to multiple vulnerabilities in the expat package, which can lead to a denial of service. This can be exploited remotely. Specifically, the
updatePosition function in lib/xmltok impl.c allows context-dependent attackers to cause an application crash via an XML document with crafted UTF-8 sequences that trigger a buffer over-read. A buffer over-read flaw was also found in the bundled expat library, which can cause a crash if an attacker can get Apache to parse an untrusted XML document.Recommendations
For versions prior to 2.1.0 beta3, update to version 2.1.0 beta3 or later to resolve the issue. As a temporary workaround, consider restricting access to the
updatePosition function in lib/xmltok impl.c until a patch is available. Additionally, avoid parsing untrusted XML documents to minimize the risk of exploitation.Exploit
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Apache Http Server
Debian
Expat
Hp-Ux
Red Hat
Itunes