Expat是一款使用C语言编写的快速流式XML解析器。 Expat 存在安全漏洞,该漏洞源于在2.4.3之前的Expat(又名libexpat)中,xmlparse.c中的storeAtts函数左移29(或更多)位可能会导致realloc错误行为(例如,分配的字节太少,或只释放内存)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/nanopathi/external_expat_AOSP10_r33_CVE-2021-45960 | POC Details |
| 2 | None | https://github.com/Trinadh465/external_lib_AOSP10_r33_CVE-2021-45960_CVE-2021-46143- | POC Details |
| 3 | None | https://github.com/hshivhare67/external_expat_v2.2.6_CVE-2021-45960 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2022-22293 | Dolibarr 跨站脚本漏洞 | |
| CVE-2021-44896 | Dmp Roadmap 跨站脚本漏洞 | |
| CVE-2021-45972 | Giftrans 缓冲区错误漏洞 | |
| CVE-2021-44852 | Biostar RACING GT Evo 安全漏洞 | |
| CVE-2021-43333 | Datalogic Dxu Service 访问控制错误漏洞 | |
| CVE-2021-41817 | Ruby 安全漏洞 | |
| CVE-2021-41819 | Ruby 安全漏洞 | |
| CVE-2021-44716 | Google Golang 资源管理错误漏洞 | |
| CVE-2021-44717 | Google Golang 资源管理错误漏洞 |
No comments yet