CVE-2019-15903

In libexpat before 2.2.8, crafted XML input could fool the parser into changing from DTD parsing to document parsing too early; a consecu… (CVE-2019-15903)

Description

In libexpat before 2.2.8, crafted XML input could fool the parser into changing from DTD parsing to document parsing too early; a consecutive call to XML_GetCurrentLineNumber (or XML_GetCurrentColumnNumber) then resulted in a heap-based buffer over-read.

Source: CVELISTV5NVD

Metrics

Severity
high
no public PoC known
7.5
Source: nvd-v3
93.5 %
Critical — this CVE ranks in the top fifth of all CVEs scored today (rank ≥ 80%).
6.6 %
Moderate — model estimates 1-10% exploitation likelihood.
Published
2019-09-04 05:59 UTC

Affected products

Products and version ranges extracted from the vendor/CERT advisory. A range like „<4.14.6“ implies the update recommendation „upgrade to 4.14.6 or later“.

  • libexpat_project

    libexpat2.2.8

  • python

    python2.7.0 – 2.7.17

  • python

    python3.5.0 – 3.5.8

  • python

    python3.6.0 – 3.6.10

  • python

    python3.7.0 – 3.7.5

References & sources

IDCVE-2019-15903