Description
In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for m_groupSize.
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.2 | Impact: 5.9Attack Vector: Network
Complexity: High
Privileges: None
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: High
Availability: High
Affected Packages6 packages
▶Debianexpat< 2.2.10-2+deb11u1+3 ▶Ubuntulibxmltok< 1.2-3ubuntu0.16.04.1~esm2+3 🔴Vulnerability Details
5OSVmame vulnerabilities↗2025-12-04 ▶ OSVlibxmltok vulnerabilities↗2022-07-19 ▶ GHSAGHSA-j6g2-cvhq-p8xr: In doProlog in xmlparse↗2022-02-10 ▶ OSVCVE-2021-46143: In doProlog in xmlparse↗2022-01-06 ▶ CVEListCVE-2021-46143: In doProlog in xmlparse↗2022-01-06 ▶ 📋Vendor Advisories
7UbuntuMAME vulnerabilities↗2025-12-04 ▶ Ubuntuxmltok library vulnerabilities↗2025-01-13 ▶ Ubuntuxmltok library vulnerabilities↗2022-07-19 ▶ UbuntuExpat vulnerabilities↗2022-02-21 ▶ Red Hatexpat: Integer overflow in doProlog in xmlparse.c↗2022-01-15 ▶