In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).
History

Mon, 05 May 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-01-01T18:47:46.000Z

Updated: 2025-05-05T16:45:11.487Z

Reserved: 2022-01-01T00:00:00.000Z

Link: CVE-2021-45960

cve-icon Vulnrichment

Updated: 2024-08-04T04:54:31.123Z

cve-icon NVD

Status : Modified

Published: 2022-01-01T19:15:08.030

Modified: 2025-05-05T17:17:28.457

Link: CVE-2021-45960

cve-icon Redhat

Severity : Moderate

Publid Date: 2022-01-17T00:00:00Z

Links: CVE-2021-45960 - Bugzilla