Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Expat, when used in a parser that has not called XML_SetHashSalt or passed it a seed of 0, makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms via vectors involving use of the srand function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Expat 安全漏洞
Vulnerability Description
Expat是美国软件开发者吉姆-克拉克所研发的一个基于C语言的XML解析器库,它采用了一个面向流的解析器。 Expat中存在安全漏洞。当程序在调用XML_SetHashSalt的解析器中使用或传递一个0种子时,攻击者可利用该漏洞破坏加密保护机制。
CVSS Information
N/A
Vulnerability Type
N/A