Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in the XML Signature Reference functionality (xsec/dsig/DSIGReference.cpp) in Apache Santuario XML Security for C++ (aka xml-security-c) before 1.7.1 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed XPointer expressions, probably related to the DSIGReference::getURIBaseTXFM function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Santuario XML Security for C++ 基于栈的缓冲区错误漏洞
Vulnerability Description
Apache Santuario是美国阿帕奇(Apache)软件基金会的一套实现XML的主要安全标准,它包含两个库:Apache XML Security for Java和Apache XML Security for C++。 Apache Santuario XML Security for C++(又名xml-security-c) 1.7.0及之前的版本中的的XMLSignature Reference功能(xsec/dsig/DSIGReference.cpp)中存在基于栈的缓冲区溢出漏洞。上
CVSS Information
N/A
Vulnerability Type
N/A