Skip to content

Integer Overflow or Wraparound SNYK-DEBIAN9-EXPAT-2331814 #365

Closed
@github-actions

Description

@github-actions

NVD Description

Note: Versions mentioned in the description apply only to the upstream expat package and not the expat package as distributed by Debian.
See How to fix? for Debian:9 relevant fixed versions and status.

lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

Remediation

Upgrade Debian:9 expat to version 2.2.0-2+deb9u4 or higher.

References

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

      Participants

      No participants

      Issue actions

        Integer Overflow or Wraparound SNYK-DEBIAN9-EXPAT-2331814 · Issue #365 · RADAR-base/cp-helm-charts