In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-01-01T18:47:46

Updated: 2024-08-04T04:54:31.123Z

Reserved: 2022-01-01T00:00:00

Link: CVE-2021-45960

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-01-01T19:15:08.030

Modified: 2022-10-06T19:08:03.287

Link: CVE-2021-45960

cve-icon Redhat

Severity : Moderate

Publid Date: 2022-01-17T00:00:00Z

Links: CVE-2021-45960 - Bugzilla