天下漏洞,尽知其名
MEDIUM

CVE-2026-102633 libexpat 整数溢出漏洞

原始情报

libexpat versions 2.7.2 through 2.8.5 contain an integer overflow vulnerability in expat_realloc() function on 32-bit platforms when computing allocation sizes. Attackers supplying malicious XML to applications parsing with vulnerable libexpat can cause heap buffer overflow, memory corruption, or denial of service.