Wind River Support Network

HomeDefectsLIN1019-10894
Fixed

LIN1019-10894 : Security Advisory - expat - CVE-2023-52425

Created: Feb 4, 2024    Updated: Mar 25, 2024
Resolved Date: Mar 25, 2024
Found In Version: 10.19.45.1
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Userspace

Description

libexpat through 2.5.0 allows a denial of service (resource consumption) because many full reparsings are required in the case of a large token for which multiple buffer fills are needed.

CREATE(Triage):(User=admin) CVE-2023-52425 (https://nvd.nist.gov/vuln/detail/CVE-2023-52425)
Live chat
Online