cbcvebase.
CVE-2024-8176
published 2025-03-14

CVE-2024-8176: A stack overflow vulnerability exists in the libexpat library due to the way it handles recursive entity expansion in XML documents. When parsing an XML…

PriorityP343high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.57%
72.5th percentile
A stack overflow vulnerability exists in the libexpat library due to the way it handles recursive entity expansion in XML documents. When parsing an XML document with deeply nested entity references, libexpat can be forced to recurse indefinitely, exhausting the stack space and causing a crash. This issue could lead to denial of service (DoS) or, in some cases, exploitable memory corruption, depending on the environment and library usage.

Affected

16 ranges
VendorProductVersion rangeFixed in
appleios_18.5_and_ipados
appleipados
applemacos_sequoia
applemacos_sonoma
applemacos_ventura
appletvos
applevisionos
applewatchos
debianexpat< expat 2.5.0-1+deb12u2 (bookworm)expat 2.5.0-1+deb12u2 (bookworm)
debianlibxmltok< expat 2.5.0-1+deb12u2 (bookworm)expat 2.5.0-1+deb12u2 (bookworm)
msrcazl3_cmake_3.30.3-6_on_azure_linux_3.0
msrcazl3_expat_2.6.4-1_on_azure_linux_3.0
msrcazl3_python3_3.12.9-1_on_azure_linux_3.0
msrccbl2_cmake_3.21.4-18_on_cbl_mariner_2.0
msrccbl2_expat_2.6.4-1_on_cbl_mariner_2.0
msrccbl2_python3_3.9.19-13_on_cbl_mariner_2.0

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian7.5HIGH
vendor_msrc7.5HIGH
vendor_redhat7.5HIGH
vendor_oracle4.9HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.