PT-2017-19393 · Apache · Xerces-J2

Published

2017-10-17

·

Updated

2017-10-17

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions xerces-j2 (affected versions not specified)
Description The issue allows for a possible Denial of Service (DoS) through very long attribute names. This can occur when an XML file is validated against a schema, potentially leading to a StackOverflowError if a pattern restriction is applied to long strings.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

SUSE-SU-2017:2744-1

Affected Products

Xerces-J2