Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2022-43680
Description:In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.
Test IDs: 1.3.6.1.4.1.25623.1.0.822845   1.3.6.1.4.1.25623.1.1.2.2023.1008   1.3.6.1.4.1.25623.1.1.2.2023.1888   1.3.6.1.4.1.25623.1.1.2.2023.1383   1.3.6.1.4.1.25623.1.1.12.2022.5638.3   1.3.6.1.4.1.25623.1.1.2.2023.2036   1.3.6.1.4.1.25623.1.1.4.2022.3874.1   1.3.6.1.4.1.25623.1.1.2.2023.1657   1.3.6.1.4.1.25623.1.1.13.2022.341.01   1.3.6.1.4.1.25623.1.0.822842   1.3.6.1.4.1.25623.1.0.822836   1.3.6.1.4.1.25623.1.1.10.2022.0409   1.3.6.1.4.1.25623.1.0.705266   1.3.6.1.4.1.25623.1.1.2.2023.1098   1.3.6.1.4.1.25623.1.0.893165   1.3.6.1.4.1.25623.1.1.13.2022.298.01   1.3.6.1.4.1.25623.1.1.4.2022.3912.1   1.3.6.1.4.1.25623.1.1.2.2023.1122   1.3.6.1.4.1.25623.1.1.2.2023.1355   1.3.6.1.4.1.25623.1.1.2.2023.1311   1.3.6.1.4.1.25623.1.1.2.2023.1033   1.3.6.1.4.1.25623.1.1.2.2023.2088   1.3.6.1.4.1.25623.1.1.2.2023.1919   1.3.6.1.4.1.25623.1.1.4.2022.3884.1   1.3.6.1.4.1.25623.1.1.2.2023.1623  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2022-43680
Debian Security Information: DSA-5266 (Google Search)
https://www.debian.org/security/2022/dsa-5266
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/AJ5VY2VYXE4WTRGQ6LMGLF6FV3SY37YE/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DPQVIF6TOJNY2T3ZZETFKR4G34FFREBQ/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XG5XOOB7CD55CEE6OJYKSACSIMQ4RWQ6/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BY4OPSIB33ETNUXZY2UPZ4NGQ3OKDY4D/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FFCOMBSOJKLIKCGCJWHLJXO4EVYBG7AR/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IUJ2BULJTZ2BMSKQHB6US674P55UCWWS/
https://security.gentoo.org/glsa/202210-38
https://github.com/libexpat/libexpat/issues/649
https://github.com/libexpat/libexpat/pull/616
https://github.com/libexpat/libexpat/pull/650
https://lists.debian.org/debian-lts-announce/2022/10/msg00033.html
http://www.openwall.com/lists/oss-security/2023/12/28/5
http://www.openwall.com/lists/oss-security/2024/01/03/5




© 1998-2025 E-Soft Inc. All rights reserved.