CVE-2022-25313: Medium severity Libexpat Project Libexpat vulnerability
A flaw was found in expat. A stack exhaustion in doctype parsing could be triggered by a file with a large number of opening braces, resulting in a denial of service.
Other sources
In Expat (aka libexpat) before 2.4.5, an attacker can trigger stack exhaustion in buildmodel via a large nesting depth in the DTD element.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/mingw-expatto a version that resolves this vulnerability.Fixed in 0:2.4.8-1.el8 - Upgrade
Upgrade
redhat/expatto a version that resolves this vulnerability.Fixed in 0:2.2.5-8.el8_6.2 - Upgrade
Upgrade
redhat/expatto a version that resolves this vulnerability.Fixed in 0:2.2.10-12.el9_0.2 - Upgrade
Upgrade
debian/expatto a version that resolves this vulnerability.Fixed in 2.2.6-2+deb10u4Fixed in 2.2.6-2+deb10u6Fixed in 2.2.10-2+deb11u5Fixed in 2.5.0-1Fixed in 2.5.0-2 - Upgrade
Upgrade
redhat/expatto a version that resolves this vulnerability.Fixed in 2.4.5 - Upgrade
Upgrade
expat (libexpat)to a version that resolves this vulnerability.Fixed in 2.4.5 - Compensating control
Restrict applications using the expat (libexpat) library from processing untrusted XML content, as no other mitigation is known.
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is CVE-2022-25313?
CVE-2022-25313 is a vulnerability in Expat (aka libexpat) before version 2.4.5 that can trigger stack exhaustion and result in denial of service.
How severe is CVE-2022-25313?
CVE-2022-25313 has a severity value of 6.5, which is considered medium.
Which software is affected by CVE-2022-25313?
Expat versions before 2.4.5 are affected by CVE-2022-25313.
How can I fix CVE-2022-25313?
To fix CVE-2022-25313, update Expat to version 2.4.5 or later.
Where can I find more information about CVE-2022-25313?
You can find more information about CVE-2022-25313 at the following references: [link1], [link2], [link3].