[USN-5638-1] Expat vulnerability

Severity Medium
Affected Packages 5
CVEs 1

Expat could be made to crash or execute arbitrary code.

Rhodri James discovered that Expat incorrectly handled memory when
processing certain malformed XML files. An attacker could possibly
use this issue to cause a crash or execute arbitrary code.

Package Affected Version
pkg:deb/ubuntu/libexpat1?distro=xenial < 2.1.0-7ubuntu0.16.04.5+esm6
pkg:deb/ubuntu/libexpat1-dev?distro=xenial < 2.1.0-7ubuntu0.16.04.5+esm6
pkg:deb/ubuntu/lib64expat1?distro=xenial < 2.1.0-7ubuntu0.16.04.5+esm6
pkg:deb/ubuntu/lib64expat1-dev?distro=xenial < 2.1.0-7ubuntu0.16.04.5+esm6
pkg:deb/ubuntu/expat?distro=xenial < 2.1.0-7ubuntu0.16.04.5+esm6
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/libexpat1?distro=xenial ubuntu libexpat1 < 2.1.0-7ubuntu0.16.04.5+esm6 xenial
Affected pkg:deb/ubuntu/libexpat1-dev?distro=xenial ubuntu libexpat1-dev < 2.1.0-7ubuntu0.16.04.5+esm6 xenial
Affected pkg:deb/ubuntu/lib64expat1?distro=xenial ubuntu lib64expat1 < 2.1.0-7ubuntu0.16.04.5+esm6 xenial
Affected pkg:deb/ubuntu/lib64expat1-dev?distro=xenial ubuntu lib64expat1-dev < 2.1.0-7ubuntu0.16.04.5+esm6 xenial
Affected pkg:deb/ubuntu/expat?distro=xenial ubuntu expat < 2.1.0-7ubuntu0.16.04.5+esm6 xenial
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...