Open mend-bolt-for-github[bot] opened 3 weeks ago
An issue was discovered in libexpat before 2.6.4. There is a crash within the XML_ResumeParser function because XML_StopParser can stop/suspend an unstarted parser.
Publish Date: 2024-10-27
URL: CVE-2024-50602
Base Score Metrics: - Exploitability Metrics: - Attack Vector: Network - Attack Complexity: High - Privileges Required: None - User Interaction: None - Scope: Unchanged - Impact Metrics: - Confidentiality Impact: None - Integrity Impact: None - Availability Impact: High
Step up your Open Source Security Game with Mend here
CVE-2024-50602 - Medium Severity Vulnerability
Vulnerable Libraries - 3p-expatv2.6.2-52fb19a, 3p-expatv2.6.2-52fb19a
Vulnerability Details
An issue was discovered in libexpat before 2.6.4. There is a crash within the XML_ResumeParser function because XML_StopParser can stop/suspend an unstarted parser.
Publish Date: 2024-10-27
URL: CVE-2024-50602
CVSS 3 Score Details (5.9)
Base Score Metrics: - Exploitability Metrics: - Attack Vector: Network - Attack Complexity: High - Privileges Required: None - User Interaction: None - Scope: Unchanged - Impact Metrics: - Confidentiality Impact: None - Integrity Impact: None - Availability Impact: High
For more information on CVSS3 Scores, click here.Step up your Open Source Security Game with Mend here