Related Vulnerabilities: CVE-2016-9063  

An integer overflow vulnerability has been discovered during the parsing of XML using the Expat library.

Severity Medium

Remote Yes

Type Denial of service

Description

An integer overflow vulnerability has been discovered during the parsing of XML using the Expat library.

AVG-306 expat 2.2.0-1 2.2.1-1 Medium Fixed

AVG-305 lib32-expat 2.2.0-1 2.2.2-1 Medium Fixed

AVG-72 firefox 49.0.2-1 50.0-1 Critical Fixed

26 Jul 2017 ASA-201707-27 AVG-305 lib32-expat Medium denial of service

26 Jun 2017 ASA-201706-32 AVG-306 expat Medium denial of service

16 Nov 2016 ASA-201611-16 AVG-72 firefox Critical multiple issues

https://www.mozilla.org/en-US/security/advisories/mfsa2016-89/#CVE-2016-9063
https://github.com/libexpat/libexpat/commit/d4f735b88d9932bd5039df2335eefdd0723dbe20