vulnerability
FreeBSD: (Multiple Advisories) (CVE-2024-45491)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | Nov 23, 2024 | Nov 23, 2024 | Jun 15, 2026 |
Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Nov 23, 2024
Added
Nov 23, 2024
Modified
Jun 15, 2026
Description
An issue was discovered in libexpat before 2.6.3. dtdCopy in xmlparse.c can have an integer overflow for nDefaultAtts on 32-bit platforms (where UINT_MAX equals SIZE_MAX).
Solutions
freebsd-upgrade-package-qt6-webenginefreebsd-upgrade-package-qt5-webenginefreebsd-upgrade-package-expat
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.