PT-2016-2117 · Expat+9 · Expat+9

Gustavo Grieco

·

Published

2016-05-17

·

Updated

2025-01-13

·

CVE-2016-0718

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Expat (affected versions not specified)
Description The issue allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a malformed input document, which triggers a buffer overflow. This can be exploited by a remote attacker using a specially crafted document.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2016-1836
ALT-PU-2017-1578
ALT-PU-2017-2088
ALT-PU-2017-2851
ALT-PU-2018-2782
BDU:2016-01470
CESA-2016_2824
CVE-2016-0718
DLA-483-1
DSA-3582-1
MGASA-2016-0193
OPENSUSE-SU-2016_1441-1
OPENSUSE-SU-2016_1523-1
OPENSUSE-SU-2016_1964-1
OPENSUSE-SU-2016_2026-1
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:10077-1
OPENSUSE-SU-2024:14572-1
PSF-2016-2
RHSA-2016:2824
RHSA-2016_2824
SUSE-SU-2016:1508-1
SUSE-SU-2016:1512-1
SUSE-SU-2017:2699-1
SUSE-SU-2017:2700-1
SUSE-SU-2020:0497-1
USN-2983-1
USN-3013-1
USN-3044-1
USN-5455-1
USN-7199-1

Affected Products

Alt Linux
Centos
Debian
Expat
Linuxmint
Nessus
Red Hat
Suse
Ubuntu
Itunes