In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for m_groupSize.
The product performs a calculation that can produce an integer overflow or wraparound, when the logic assumes that the resulting value will always be larger than the original value. This can introduce other weaknesses when the calculation is used for resource management or execution control.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libexpat | Libexpat_project | * | 2.4.3 (excluding) |
Red Hat Enterprise Linux 7 | RedHat | expat-0:2.1.0-14.el7_9 | * |
Red Hat Enterprise Linux 8 | RedHat | expat-0:2.2.5-4.el8_5.3 | * |
Red Hat Enterprise Linux 8 | RedHat | xmlrpc-c-0:1.51.0-8.el8 | * |
Red Hat JBoss Core Services 1 | RedHat | expat | * |
Apache2 | Ubuntu | trusty | * |
Apr-util | Ubuntu | trusty | * |
Astropy | Ubuntu | bionic | * |
Astropy | Ubuntu | hirsute | * |
Astropy | Ubuntu | impish | * |
Astropy | Ubuntu | kinetic | * |
Astropy | Ubuntu | lunar | * |
Astropy | Ubuntu | mantic | * |
Astropy | Ubuntu | trusty | * |
Astropy | Ubuntu | xenial | * |
Audacity | Ubuntu | bionic | * |
Audacity | Ubuntu | hirsute | * |
Audacity | Ubuntu | impish | * |
Audacity | Ubuntu | kinetic | * |
Audacity | Ubuntu | lunar | * |
Audacity | Ubuntu | mantic | * |
Audacity | Ubuntu | trusty | * |
Audacity | Ubuntu | xenial | * |
Ayttm | Ubuntu | trusty | * |
Ayttm | Ubuntu | xenial | * |
Cableswig | Ubuntu | trusty | * |
Cableswig | Ubuntu | xenial | * |
Cadaver | Ubuntu | bionic | * |
Cadaver | Ubuntu | hirsute | * |
Cadaver | Ubuntu | impish | * |
Cadaver | Ubuntu | kinetic | * |
Cadaver | Ubuntu | lunar | * |
Cadaver | Ubuntu | mantic | * |
Cadaver | Ubuntu | trusty | * |
Cadaver | Ubuntu | xenial | * |
Cmake | Ubuntu | trusty | * |
Coda | Ubuntu | hirsute | * |
Coda | Ubuntu | impish | * |
Coda | Ubuntu | kinetic | * |
Coda | Ubuntu | lunar | * |
Coda | Ubuntu | mantic | * |
Coda | Ubuntu | trusty | * |
Coda | Ubuntu | xenial | * |
Coin3 | Ubuntu | bionic | * |
Coin3 | Ubuntu | trusty | * |
Coin3 | Ubuntu | xenial | * |
Emboss | Ubuntu | bionic | * |
Emboss | Ubuntu | hirsute | * |
Emboss | Ubuntu | impish | * |
Emboss | Ubuntu | kinetic | * |
Emboss | Ubuntu | lunar | * |
Emboss | Ubuntu | mantic | * |
Emboss | Ubuntu | trusty | * |
Emboss | Ubuntu | xenial | * |
Expat | Ubuntu | bionic | * |
Expat | Ubuntu | devel | * |
Expat | Ubuntu | esm-infra/xenial | * |
Expat | Ubuntu | focal | * |
Expat | Ubuntu | hirsute | * |
Expat | Ubuntu | impish | * |
Expat | Ubuntu | jammy | * |
Expat | Ubuntu | kinetic | * |
Expat | Ubuntu | lunar | * |
Expat | Ubuntu | mantic | * |
Expat | Ubuntu | noble | * |
Expat | Ubuntu | oracular | * |
Expat | Ubuntu | trusty | * |
Expat | Ubuntu | trusty/esm | * |
Expat | Ubuntu | xenial | * |
Firefox | Ubuntu | bionic | * |
Firefox | Ubuntu | devel | * |
Firefox | Ubuntu | focal | * |
Firefox | Ubuntu | impish | * |
Firefox | Ubuntu | jammy | * |
Firefox | Ubuntu | kinetic | * |
Firefox | Ubuntu | lunar | * |
Firefox | Ubuntu | mantic | * |
Firefox | Ubuntu | noble | * |
Firefox | Ubuntu | oracular | * |
Firefox | Ubuntu | trusty | * |
Firefox | Ubuntu | upstream | * |
Firefox | Ubuntu | xenial | * |
Gdcm | Ubuntu | trusty | * |
Ghostscript | Ubuntu | trusty | * |
Harp | Ubuntu | hirsute | * |
Harp | Ubuntu | impish | * |
Harp | Ubuntu | kinetic | * |
Harp | Ubuntu | lunar | * |
Harp | Ubuntu | mantic | * |
Harp | Ubuntu | trusty | * |
Harp | Ubuntu | xenial | * |
Ibm-3270 | Ubuntu | bionic | * |
Ibm-3270 | Ubuntu | hirsute | * |
Ibm-3270 | Ubuntu | impish | * |
Ibm-3270 | Ubuntu | kinetic | * |
Ibm-3270 | Ubuntu | lunar | * |
Ibm-3270 | Ubuntu | mantic | * |
Ibm-3270 | Ubuntu | trusty | * |
Ibm-3270 | Ubuntu | xenial | * |
Insighttoolkit | Ubuntu | trusty | * |
Insighttoolkit | Ubuntu | xenial | * |
Insighttoolkit4 | Ubuntu | hirsute | * |
Insighttoolkit4 | Ubuntu | impish | * |
Insighttoolkit4 | Ubuntu | trusty | * |
Insighttoolkit4 | Ubuntu | xenial | * |
Insighttoolkit5 | Ubuntu | kinetic | * |
Insighttoolkit5 | Ubuntu | lunar | * |
Insighttoolkit5 | Ubuntu | mantic | * |
Insighttoolkit5 | Ubuntu | trusty | * |
Insighttoolkit5 | Ubuntu | xenial | * |
Libsynthesis | Ubuntu | bionic | * |
Libsynthesis | Ubuntu | hirsute | * |
Libsynthesis | Ubuntu | impish | * |
Libsynthesis | Ubuntu | kinetic | * |
Libsynthesis | Ubuntu | lunar | * |
Libsynthesis | Ubuntu | mantic | * |
Libsynthesis | Ubuntu | trusty | * |
Libsynthesis | Ubuntu | xenial | * |
Libxmltok | Ubuntu | bionic | * |
Libxmltok | Ubuntu | devel | * |
Libxmltok | Ubuntu | esm-apps/bionic | * |
Libxmltok | Ubuntu | esm-apps/focal | * |
Libxmltok | Ubuntu | esm-apps/jammy | * |
Libxmltok | Ubuntu | esm-apps/noble | * |
Libxmltok | Ubuntu | esm-apps/xenial | * |
Libxmltok | Ubuntu | focal | * |
Libxmltok | Ubuntu | hirsute | * |
Libxmltok | Ubuntu | impish | * |
Libxmltok | Ubuntu | jammy | * |
Libxmltok | Ubuntu | kinetic | * |
Libxmltok | Ubuntu | lunar | * |
Libxmltok | Ubuntu | mantic | * |
Libxmltok | Ubuntu | noble | * |
Libxmltok | Ubuntu | oracular | * |
Libxmltok | Ubuntu | trusty | * |
Libxmltok | Ubuntu | xenial | * |
Mame | Ubuntu | bionic | * |
Mame | Ubuntu | hirsute | * |
Mame | Ubuntu | impish | * |
Mame | Ubuntu | kinetic | * |
Mame | Ubuntu | lunar | * |
Mame | Ubuntu | mantic | * |
Mame | Ubuntu | trusty | * |
Mame | Ubuntu | xenial | * |
Matanza | Ubuntu | bionic | * |
Matanza | Ubuntu | hirsute | * |
Matanza | Ubuntu | impish | * |
Matanza | Ubuntu | kinetic | * |
Matanza | Ubuntu | lunar | * |
Matanza | Ubuntu | mantic | * |
Matanza | Ubuntu | trusty | * |
Matanza | Ubuntu | xenial | * |
Opencollada | Ubuntu | bionic | * |
Opencollada | Ubuntu | hirsute | * |
Opencollada | Ubuntu | impish | * |
Opencollada | Ubuntu | kinetic | * |
Opencollada | Ubuntu | lunar | * |
Opencollada | Ubuntu | mantic | * |
Opencollada | Ubuntu | trusty | * |
Opencollada | Ubuntu | xenial | * |
Paraview | Ubuntu | bionic | * |
Paraview | Ubuntu | hirsute | * |
Paraview | Ubuntu | impish | * |
Paraview | Ubuntu | kinetic | * |
Paraview | Ubuntu | lunar | * |
Paraview | Ubuntu | mantic | * |
Paraview | Ubuntu | trusty | * |
Paraview | Ubuntu | xenial | * |
Poco | Ubuntu | bionic | * |
Poco | Ubuntu | hirsute | * |
Poco | Ubuntu | impish | * |
Poco | Ubuntu | kinetic | * |
Poco | Ubuntu | lunar | * |
Poco | Ubuntu | mantic | * |
Poco | Ubuntu | trusty | * |
Poco | Ubuntu | xenial | * |
Python2.7 | Ubuntu | hirsute | * |
Python2.7 | Ubuntu | trusty | * |
Python2.7 | Ubuntu | xenial | * |
Python3.10 | Ubuntu | hirsute | * |
Python3.4 | Ubuntu | trusty | * |
Python3.5 | Ubuntu | trusty | * |
Python3.5 | Ubuntu | xenial | * |
Python3.9 | Ubuntu | hirsute | * |
Qtwebengine-opensource-src | Ubuntu | bionic | * |
Qtwebengine-opensource-src | Ubuntu | hirsute | * |
Qtwebengine-opensource-src | Ubuntu | impish | * |
Qtwebengine-opensource-src | Ubuntu | kinetic | * |
Qtwebengine-opensource-src | Ubuntu | lunar | * |
Qtwebengine-opensource-src | Ubuntu | mantic | * |
Qtwebengine-opensource-src | Ubuntu | trusty | * |
Qtwebengine-opensource-src | Ubuntu | xenial | * |
Sitecopy | Ubuntu | bionic | * |
Sitecopy | Ubuntu | hirsute | * |
Sitecopy | Ubuntu | impish | * |
Sitecopy | Ubuntu | kinetic | * |
Sitecopy | Ubuntu | lunar | * |
Sitecopy | Ubuntu | mantic | * |
Sitecopy | Ubuntu | trusty | * |
Sitecopy | Ubuntu | xenial | * |
Smart | Ubuntu | trusty | * |
Swish-e | Ubuntu | bionic | * |
Swish-e | Ubuntu | hirsute | * |
Swish-e | Ubuntu | impish | * |
Swish-e | Ubuntu | kinetic | * |
Swish-e | Ubuntu | lunar | * |
Swish-e | Ubuntu | mantic | * |
Swish-e | Ubuntu | trusty | * |
Swish-e | Ubuntu | xenial | * |
Tdom | Ubuntu | bionic | * |
Tdom | Ubuntu | hirsute | * |
Tdom | Ubuntu | impish | * |
Tdom | Ubuntu | kinetic | * |
Tdom | Ubuntu | lunar | * |
Tdom | Ubuntu | mantic | * |
Tdom | Ubuntu | trusty | * |
Tdom | Ubuntu | xenial | * |
Texlive-bin | Ubuntu | trusty | * |
Thunderbird | Ubuntu | bionic | * |
Thunderbird | Ubuntu | hirsute | * |
Thunderbird | Ubuntu | impish | * |
Thunderbird | Ubuntu | kinetic | * |
Thunderbird | Ubuntu | trusty | * |
Thunderbird | Ubuntu | xenial | * |
Tla | Ubuntu | bionic | * |
Tla | Ubuntu | hirsute | * |
Tla | Ubuntu | impish | * |
Tla | Ubuntu | kinetic | * |
Tla | Ubuntu | lunar | * |
Tla | Ubuntu | mantic | * |
Tla | Ubuntu | trusty | * |
Tla | Ubuntu | xenial | * |
Visp | Ubuntu | bionic | * |
Visp | Ubuntu | hirsute | * |
Visp | Ubuntu | impish | * |
Visp | Ubuntu | kinetic | * |
Visp | Ubuntu | lunar | * |
Visp | Ubuntu | mantic | * |
Visp | Ubuntu | trusty | * |
Visp | Ubuntu | xenial | * |
Vnc4 | Ubuntu | bionic | * |
Vnc4 | Ubuntu | trusty | * |
Vnc4 | Ubuntu | xenial | * |
Vtk | Ubuntu | trusty | * |
Vtk | Ubuntu | xenial | * |
Wbxml2 | Ubuntu | bionic | * |
Wbxml2 | Ubuntu | hirsute | * |
Wbxml2 | Ubuntu | impish | * |
Wbxml2 | Ubuntu | kinetic | * |
Wbxml2 | Ubuntu | lunar | * |
Wbxml2 | Ubuntu | mantic | * |
Wbxml2 | Ubuntu | trusty | * |
Wbxml2 | Ubuntu | xenial | * |
Xmlrpc | Ubuntu | trusty | * |
Xmlrpc | Ubuntu | xenial | * |
Xmlrpc-c | Ubuntu | bionic | * |
Xmlrpc-c | Ubuntu | hirsute | * |
Xmlrpc-c | Ubuntu | impish | * |
Xmlrpc-c | Ubuntu | kinetic | * |
Xmlrpc-c | Ubuntu | lunar | * |
Xmlrpc-c | Ubuntu | mantic | * |
Xmlrpc-c | Ubuntu | trusty | * |
Xmlrpc-c | Ubuntu | xenial | * |
Xsd | Ubuntu | bionic | * |
Xsd | Ubuntu | hirsute | * |
Xsd | Ubuntu | impish | * |
Xsd | Ubuntu | kinetic | * |
Xsd | Ubuntu | lunar | * |
Xsd | Ubuntu | mantic | * |
Xsd | Ubuntu | trusty | * |
Xsd | Ubuntu | xenial | * |