Back to search
CVE-2017-9233
Published: Jul 25, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://support.apple.com/HT208144
x_refsource_CONFIRM
https://libexpat.github.io/doc/cve-2017-9233/
x_refsource_CONFIRM
https://github.com/libexpat/libexpat/blob/master/expat/Changes
x_refsource_CONFIRM
1039427
vdb-entry
x_refsource_SECTRACK
https://support.apple.com/HT208113
x_refsource_CONFIRM
https://support.apple.com/HT208112
x_refsource_CONFIRM
https://support.apple.com/HT208115
x_refsource_CONFIRM
DSA-3898
vendor-advisory
x_refsource_DEBIAN
99276
vdb-entry
x_refsource_BID
[oss-security] 20170618 Expat 2.2.1 security fixes
mailing-list
x_refsource_MLIST
https://support.f5.com/csp/article/K03244804
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now