CVE-2026-56405
published 2026-06-21CVE-2026-56405: libexpat before 2.8.2 has an integer overflow in getAttributeId.
PriorityP431medium6.9CVSS 3.1
AVLACHPRNUINSUCHIHAL
EPSS
0.10%
1.1th percentile
libexpat before 2.8.2 has an integer overflow in getAttributeId.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ansible-automation-platform-26 | lightspeed-chatbot-rhel9 | — | — |
| ansible-automation-platform-27 | lightspeed-chatbot-rhel9 | — | — |
| debian | expat | — | — |
| exploit-intelligence-tech-preview | vulnerability-analysis-rhel9 | — | — |
| libexpat_project | libexpat | < 2.8.2 | 2.8.2 |
| rhoai | odh-llama-stack-core-rhel9 | — | — |
| rhoai | odh-mlflow-rhel9 | — | — |
| rhoai | odh-trustyai-garak-lls-provider-dsp-rhel9 | — | — |
CVSS provenance
nvdv3.16.9MEDIUMCVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L
vendor_redhat6.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
libexpat before 2.8.2 has an integer overflow in getAttributeId.
ghsa_unreviewed·2026-06-21
CVE-2026-56405 [MEDIUM] CWE-190 libexpat before 2.8.2 has an integer overflow in getAttributeId.
libexpat before 2.8.2 has an integer overflow in getAttributeId.
VulDB
libexpat up to 2.8.1 integer overflow (EUVD-2026-38182)
vuldb·2026-06-21·CVSS 6.9
CVE-2026-56405 [MEDIUM] libexpat up to 2.8.1 integer overflow (EUVD-2026-38182)
A vulnerability, which was classified as problematic, has been found in libexpat up to 2.8.1. This vulnerability affects unknown code. Performing a manipulation results in integer overflow.
This vulnerability is cataloged as CVE-2026-56405. The attack must be initiated from a local position. There is no exploit available.
It is advisable to upgrade the affected component.
Red Hat
libexpat: libexpat: Information disclosure and arbitrary code execution via integer overflow
vendor_redhat·2026-06-21·CVSS 6.9
CVE-2026-56405 [MEDIUM] CWE-190 libexpat: libexpat: Information disclosure and arbitrary code execution via integer overflow
libexpat: libexpat: Information disclosure and arbitrary code execution via integer overflow
libexpat before 2.8.2 has an integer overflow in getAttributeId.
A flaw was found in libexpat. An integer overflow vulnerability exists within the `getAttributeId` function. This flaw could allow an attacker to potentially disclose sensitive information or execute arbitrary code, leading to a compromise of the system's integrity and confidentiality.
Statement: The moderate vulnerability in libexpat's `getAttributeId` function could allow a local attacker to achieve information disclosure or arbitrary code execution due to an integer overflow. The high attack complexity and local access required inherently mitigate the opportunity for successful exploitation. However, successful exploitation coul
No detection rules found.
No public exploits indexed.
2026-06-21
Published