Security Advisory

CVE-2022-43680

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-10-24 00:00:00
Last updated 2025-05-30 19:20:52
Assigner mitre
State PUBLISHED

Description

In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.