CVE-2026-56404
published 2026-06-21CVE-2026-56404: libexpat before 2.8.2 has an integer overflow in addBinding.
PriorityP432medium6.9CVSS 3.1
AVLACHPRNUINSUCHIHAL
EPSS
0.14%
3.7th percentile
libexpat before 2.8.2 has an integer overflow in addBinding.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | expat | — | — |
| debian | xmlrpc-c | — | — |
| libexpat_project | libexpat | < 2.8.2 | 2.8.2 |
| mozilla | firefox | — | — |
| mozilla | thunderbird | — | — |
CVSS provenance
nvdv3.16.9MEDIUMCVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L
vendor_redhat6.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
libexpat up to 2.8.1 integer overflow (EUVD-2026-38181)
vuldb·2026-06-21·CVSS 6.9
CVE-2026-56404 [MEDIUM] libexpat up to 2.8.1 integer overflow (EUVD-2026-38181)
A vulnerability classified as problematic was found in libexpat up to 2.8.1. This affects an unknown part. Such manipulation leads to integer overflow.
This vulnerability is listed as CVE-2026-56404. The attack must be carried out locally. There is no available exploit.
Upgrading the affected component is advised.
GHSA
libexpat before 2.8.2 has an integer overflow in addBinding.
ghsa_unreviewed·2026-06-21
CVE-2026-56404 [MEDIUM] CWE-190 libexpat before 2.8.2 has an integer overflow in addBinding.
libexpat before 2.8.2 has an integer overflow in addBinding.
Red Hat
libexpat: libexpat: Arbitrary Code Execution via integer overflow in addBinding
vendor_redhat·2026-06-21·CVSS 6.9
CVE-2026-56404 [MEDIUM] CWE-190 libexpat: libexpat: Arbitrary Code Execution via integer overflow in addBinding
libexpat: libexpat: Arbitrary Code Execution via integer overflow in addBinding
libexpat before 2.8.2 has an integer overflow in addBinding.
A flaw was found in libexpat. This vulnerability, an integer overflow in the `addBinding` function, could allow a local attacker to execute arbitrary code. By exploiting this, an attacker could gain control over the affected system, compromising its confidentiality and integrity.
Statement: This Moderate impact flaw in libexpat, an XML parsing library, could lead to arbitrary code execution through an integer overflow in the `addBinding` function. Exploitation requires local access and high attack complexity, which limits its immediate risk in standard Red Hat deployments. The vulnerability primarily affects applications that process untrusted XML
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-56404 expat: libexpat: Arbitrary Code Execution via integer overflow in addBinding [fedora-all]
bugzilla·2026-07-29·CVSS 6.9
CVE-2026-56404 [MEDIUM] CVE-2026-56404 expat: libexpat: Arbitrary Code Execution via integer overflow in addBinding [fedora-all]
CVE-2026-56404 expat: libexpat: Arbitrary Code Execution via integer overflow in addBinding [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
libexpat before 2.8.2 has an integer overflow in addBinding.
Bugzilla
CVE-2026-56404 mingw-expat: libexpat: Arbitrary Code Execution via integer overflow in addBinding [fedora-all]
bugzilla·2026-07-29·CVSS 6.9
CVE-2026-56404 [MEDIUM] CVE-2026-56404 mingw-expat: libexpat: Arbitrary Code Execution via integer overflow in addBinding [fedora-all]
CVE-2026-56404 mingw-expat: libexpat: Arbitrary Code Execution via integer overflow in addBinding [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
libexpat before 2.8.2 has an integer overflow in addBinding.
Discussion:
All current releases are on mingw-expat-2.8.2.
Bugzilla
CVE-2026-56404 libexpat: libexpat: Arbitrary Code Execution via integer overflow in addBinding
bugzilla·2026-06-21·CVSS 6.9
CVE-2026-56404 [MEDIUM] CVE-2026-56404 libexpat: libexpat: Arbitrary Code Execution via integer overflow in addBinding
CVE-2026-56404 libexpat: libexpat: Arbitrary Code Execution via integer overflow in addBinding
libexpat before 2.8.2 has an integer overflow in addBinding.
2026-06-21
Published