Early Access — Mondoo Vulnerability Intelligence is currently in preview.
Memory leak in the poolGrow function in expat/lib/xmlparse.c in expat before 2.1.0 allows context-dependent attackers to cause a denial of service (memory consumption) via a large number of crafted XML files that cause improperly-handled reallocation failures when expanding entities.
0.6.3-3build10.6.3-3build10.1.0+git20150808-10.1.0+git20150808-20.23.3-2ubuntu30.23.3-2.1build10.23.3-2ubuntu20.24+dfsg-20.24+dfsg-30.24+dfsg-3build10.24+dfsg-3build20.23.3-2.1build10.24+dfsg-40.26+dfsg-20.23.3-2.1build10.23.3-2ubuntu33.1.4~abc9f50-33.1.4~abc9f50-43.1.4~abc9f50-4ubuntu23.1.4~abc9f50-4ubuntu2+esm13.1.4~abc9f50+dfsg1-23.1.4~abc9f50+dfsg2-13.1.4~abc9f50+dfsg3-13.1.4~abc9f50+dfsg3-23.1.4~abc9f50+dfsg1-13.1.4~abc9f50+dfsg1-1ubuntu0.1~esm13.1.4~abc9f50-33.1.4~abc9f50-43.1.4~abc9f50-4ubuntu23.1.4~abc9f50-4ubuntu2+esm13.20.1+git20120521-63.20.1+git20120521-6build11.2-3build31.2-3ubuntu0.16.04.1~esm11.2-3ubuntu0.16.04.1~esm21.2-4.1ubuntu31.2-4.1ubuntu41.2-41.2-4ubuntu0.20.04.1~esm11.2-4ubuntu0.20.04.1~esm21.2-4ubuntu0.20.04.1~esm31.2-4ubuntu0.20.04.1~esm41.2-4ubuntu0.20.04.1~esm51.2-4.1ubuntu11.2-4.1ubuntu21.2-4ubuntu11.2-4.1ubuntu11.2-4.1ubuntu21.2-4.1ubuntu2.24.0.4.1+esm11.2-4.1ubuntu2.24.0.4.1+esm21.2-4ubuntu11.2-4.1ubuntu2.24.0.4.1+esm31.2-41.2-4ubuntu0.18.04.1~esm11.2-4ubuntu0.18.04.1~esm21.2-4ubuntu0.18.04.1~esm31.2-4ubuntu0.18.04.1~esm41.2-4ubuntu0.18.04.1~esm51.2-41.2-41.2-4ubuntu0.22.04.1~esm11.2-4ubuntu0.22.04.1~esm21.2-4ubuntu0.22.04.1~esm31.2-4ubuntu0.22.04.1~esm41.2-4ubuntu0.22.04.1~esm50.13+ds1-50.13+ds2-10.13+ds1-5build10.13+ds1-60.13+ds1-60.13+ds2-10.13+ds2-10.13+ds2-1build10.13+ds2-1build20.13+ds2-1build20.13+ds2-25.12.1+dfsg-45.13.2+dfsg-2ubuntu11:0.16.6-131:0.16.6-141:0.16.6-151:0.16.6-162.4.7-6build12.4.7-6build22.4.7-6.22.4.7-6.2build12.4.7-6.2build22.4.7-6.2build32.4.7-6.12.4.7-6.1build12.4.7-6build32.4.7-6.2build32.4.7-6.2build42.4.7-6.32.4.7-5ubuntu12.4.7-42.4.7-4build14.1.1+xorg4.3.0-37.3ubuntu24.1.1+xorg4.3.0-37.3ubuntu24.1.1+xorg4.3.0-37.3ubuntu2.1+esm14.1.1+xorg4.3.0-37ubuntu54.1.1+xorg4.3.0-37ubuntu5.0.14.1.1+xorg4.3.0-37ubuntu5.0.24.1.1+xorg4.3.0-37ubuntu5.0.2+esm1