摘要:
In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).
安全等级: Low
公告ID: KylinSec-SA-2024-2990
发布日期: 2024年7月2日
关联CVE: CVE-2021-45960
In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).
cve名称 | 产品 | 组件 | 是否受影响 |
---|---|---|---|
CVE-2021-45960 | KY3.5.2 | mozjs78 | Unaffected |
CVE-2021-45960 | V6 | mozjs78 | Unaffected |