MidnightBSD / src

MidnightBSD OS source code
https://www.midnightbsd.org/
Other
55 stars 6 forks source link

CVE-2024-50602 (Medium) detected in 3p-expatv2.6.2-52fb19a, 3p-expatv2.6.2-52fb19a #228

Open mend-bolt-for-github[bot] opened 3 weeks ago

mend-bolt-for-github[bot] commented 3 weeks ago

CVE-2024-50602 - Medium Severity Vulnerability

Vulnerable Libraries - 3p-expatv2.6.2-52fb19a, 3p-expatv2.6.2-52fb19a

Vulnerability Details

An issue was discovered in libexpat before 2.6.4. There is a crash within the XML_ResumeParser function because XML_StopParser can stop/suspend an unstarted parser.

Publish Date: 2024-10-27

URL: CVE-2024-50602

CVSS 3 Score Details (5.9)

Base Score Metrics: - Exploitability Metrics: - Attack Vector: Network - Attack Complexity: High - Privileges Required: None - User Interaction: None - Scope: Unchanged - Impact Metrics: - Confidentiality Impact: None - Integrity Impact: None - Availability Impact: High

For more information on CVSS3 Scores, click here.


Step up your Open Source Security Game with Mend here