SDoP versions prior to 1.11 fails to handle appropriately some parameters inside the input data, resulting in a stack-based buffer overflow vulnerability. When a user of the affected product is tricked to process a specially crafted XML file, arbitrary code may be executed on the user's environment.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2024-07-29T08:39:25.832Z
Updated: 2024-08-02T04:46:52.953Z
Reserved: 2024-07-22T23:33:29.246Z
Link: CVE-2024-41881
Vulnrichment
Updated: 2024-08-02T04:46:52.953Z
NVD
Status : Awaiting Analysis
Published: 2024-07-29T09:15:02.773
Modified: 2024-11-21T09:33:14.563
Link: CVE-2024-41881
Redhat
No data.