CVE-2009-1885
published 2009-08-11CVE-2009-1885: Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 2.7.0 and 2.8.0 allows context-dependent attackers to cause a denial of…
PriorityP418medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
5.32%
91.7th percentile
Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 2.7.0 and 2.8.0 allows context-dependent attackers to cause a denial of service (application crash) via vectors involving nested parentheses and invalid byte values in "simply nested DTD structures," as demonstrated by the Codenomicon XML fuzzing framework.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | xerces-c | — | — |
| apache | xerces-c | — | — |
| apache | xerces-c | >= 0 < 3.0.1-2 | 3.0.1-2 |
| apache | xerces-c | >= 0 < 3.0.1-2 | 3.0.1-2 |
| apache | xerces-c | >= 0 < 3.0.1-2 | 3.0.1-2 |
| apache | xerces-c | >= 0 < 3.0.1-2 | 3.0.1-2 |
| debian | xerces-c | < xerces-c 3.0.1-2 (bookworm) | xerces-c 3.0.1-2 (bookworm) |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3LOW
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-m76p-wpqx-3m7x: Stack consumption vulnerability in validators/DTD/DTDScanner
ghsa_unreviewed·2022-05-02
CVE-2009-1885 [MEDIUM] CWE-119 GHSA-m76p-wpqx-3m7x: Stack consumption vulnerability in validators/DTD/DTDScanner
Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 2.7.0 and 2.8.0 allows context-dependent attackers to cause a denial of service (application crash) via vectors involving nested parentheses and invalid byte values in "simply nested DTD structures," as demonstrated by the Codenomicon XML fuzzing framework.
OSV
CVE-2009-1885: Stack consumption vulnerability in validators/DTD/DTDScanner
osv·2009-08-11·CVSS 4.3
CVE-2009-1885 [MEDIUM] CVE-2009-1885: Stack consumption vulnerability in validators/DTD/DTDScanner
Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 2.7.0 and 2.8.0 allows context-dependent attackers to cause a denial of service (application crash) via vectors involving nested parentheses and invalid byte values in "simply nested DTD structures," as demonstrated by the Codenomicon XML fuzzing framework.
Red Hat
xerces-c27: Stack overflow when parsing recursive XML structures
vendor_redhat·2009-08-05·CVSS 4.3
CVE-2009-1885 [MEDIUM] CWE-674 xerces-c27: Stack overflow when parsing recursive XML structures
xerces-c27: Stack overflow when parsing recursive XML structures
Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 2.7.0 and 2.8.0 allows context-dependent attackers to cause a denial of service (application crash) via vectors involving nested parentheses and invalid byte values in "simply nested DTD structures," as demonstrated by the Codenomicon XML fuzzing framework.
Statement: Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: xerces-c (Red Hat Enterprise MRG 1) - Will not fix
Package: xerces-c (Red Hat Enterpris
Debian
CVE-2009-1885: xerces-c - Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerce...
vendor_debian·2009·CVSS 4.3
CVE-2009-1885 [MEDIUM] CVE-2009-1885: xerces-c - Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerce...
Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 2.7.0 and 2.8.0 allows context-dependent attackers to cause a denial of service (application crash) via vectors involving nested parentheses and invalid byte values in "simply nested DTD structures," as demonstrated by the Codenomicon XML fuzzing framework.
Scope: local
bookworm: resolved (fixed in 3.0.1-2)
bullseye: resolved (fixed in 3.0.1-2)
forky: resolved (fixed in 3.0.1-2)
sid: resolved (fixed in 3.0.1-2)
trixie: resolved (fixed in 3.0.1-2)
No detection rules found.
No public exploits indexed.
http://secunia.com/advisories/36201http://svn.apache.org/viewvc/xerces/c/trunk/src/xercesc/validators/DTD/DTDScanner.cpp?r1=781488&r2=781487&pathrev=781488&view=patchhttp://svn.apache.org/viewvc?view=rev&revision=781488http://www.cert.fi/en/reports/2009/vulnerability2009085.htmlhttp://www.codenomicon.com/labs/xml/http://www.mandriva.com/security/advisories?name=MDVSA-2009:223http://www.networkworld.com/columnists/2009/080509-xml-flaw.htmlhttp://www.securityfocus.com/bid/35986http://www.vupen.com/english/advisories/2009/2196https://bugzilla.redhat.com/show_bug.cgi?id=515515https://exchange.xforce.ibmcloud.com/vulnerabilities/52321https://www.redhat.com/archives/fedora-package-announce/2009-August/msg01001.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-August/msg01099.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-August/msg01136.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-August/msg01150.htmlhttp://secunia.com/advisories/36201http://svn.apache.org/viewvc/xerces/c/trunk/src/xercesc/validators/DTD/DTDScanner.cpp?r1=781488&r2=781487&pathrev=781488&view=patchhttp://svn.apache.org/viewvc?view=rev&revision=781488http://www.cert.fi/en/reports/2009/vulnerability2009085.htmlhttp://www.codenomicon.com/labs/xml/http://www.mandriva.com/security/advisories?name=MDVSA-2009:223http://www.networkworld.com/columnists/2009/080509-xml-flaw.htmlhttp://www.securityfocus.com/bid/35986http://www.vupen.com/english/advisories/2009/2196https://bugzilla.redhat.com/show_bug.cgi?id=515515https://exchange.xforce.ibmcloud.com/vulnerabilities/52321https://www.redhat.com/archives/fedora-package-announce/2009-August/msg01001.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-August/msg01099.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-August/msg01136.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-August/msg01150.html
2009-08-11
Published