A heap-based buffer overflow exists in XML Decompression DecodeTreeBlock in AT&T Labs Xmill 0.7. A crafted input file can lead to remote code execution. This is not the same as any of: CVE-2021-21810, CVE-2021-21811, CVE-2021-21812, CVE-2021-21815, CVE-2021-21825, CVE-2021-21826, CVE-2021-21828, CVE-2021-21829, or CVE-2021-21830. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-04-14T12:04:26
Updated: 2024-08-03T05:03:32.896Z
Reserved: 2022-03-06T00:00:00
Link: CVE-2022-26507
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-04-14T13:15:11.637
Modified: 2024-11-21T06:54:04.920
Link: CVE-2022-26507
Redhat
No data.