Related Vulnerabilities: CVE-2022-25314  

In Expat (aka libexpat) before 2.4.5, there is an integer overflow in copyString.

Description

The MITRE CVE dictionary describes this issue as:

In Expat (aka libexpat) before 2.4.5, there is an integer overflow in copyString.

Additional Information

  • Bugzilla 2056354: CVE-2022-25314 expat: Integer overflow in copyString
  • CWE-190: Integer Overflow or Wraparound
  • FAQ: Frequently asked questions about CVE-2022-25314