SDoP versions prior to 1.11 fails to handle appropriately some parameters inside the input data, resulting in a stack-based buffer overflow vulnerability. When a user of the affected product is tricked to process a specially crafted XML file, arbitrary code may be executed on the user's environment.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2024-07-29T08:39:25.832Z

Updated: 2024-08-02T04:46:52.953Z

Reserved: 2024-07-22T23:33:29.246Z

Link: CVE-2024-41881

cve-icon Vulnrichment

Updated: 2024-08-02T04:46:52.953Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-07-29T09:15:02.773

Modified: 2024-08-01T13:59:13.313

Link: CVE-2024-41881

cve-icon Redhat

No data.