TinyXML through 2.6.2 has an infinite loop in TiXmlParsingData::Stamp in tinyxmlparser.cpp via the TIXML_UTF_LEAD_0 case. It can be triggered by a crafted XML message and leads to a denial of service.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade tinyxml | Aug 22, 2024 | Oct 11, 2021 |
| Debian | — | Upgrade tinyxml | May 2, 2022 | Oct 11, 2021 |
| Suse | — | Upgrade libtinyxml0Upgrade tinyxml-develUpgrade tinyxml-docs | Nov 10, 2021 | Oct 11, 2021 |
| Ubuntu | — | Upgrade libtinyxml2.6.2v5 (Ubuntu Pro)Upgrade libtinyxml2.6.2v5Upgrade libtinyxml-devUpgrade libtinyxml-dev (Ubuntu Pro) | Dec 8, 2023 | Oct 11, 2021 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub