vulnerability
Alpine Linux: CVE-2026-25210: Integer Overflow or Wraparound
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:L/AC:M/Au:N/C:C/I:C/A:P) | Jan 30, 2026 | Feb 4, 2026 | Feb 4, 2026 |
Severity
7
CVSS
(AV:L/AC:M/Au:N/C:C/I:C/A:P)
Published
Jan 30, 2026
Added
Feb 4, 2026
Modified
Feb 4, 2026
Description
In libexpat before 2.7.4, the doContent function does not properly determine the buffer size bufSize because there is no integer overflow check for tag buffer reallocation.
Solution
alpine-linux-upgrade-expat
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.