4.3
CVSSv2

CVE-2013-4517

Published: 11/01/2014 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 384
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Apache Santuario XML Security for Java prior to 1.5.6, when applying Transforms, allows remote malicious users to cause a denial of service (memory consumption) via crafted Document Type Definitions (DTDs), related to signatures.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache santuario xml security for java 1.4.1

apache santuario xml security for java 1.4.2

apache santuario xml security for java 1.4.3

apache santuario xml security for java 1.3.0

apache santuario xml security for java 1.4.5

apache santuario xml security for java 1.4.4

apache santuario xml security for java 1.5.1

apache santuario xml security for java 1.4.8

apache santuario xml security for java 1.4.6

apache santuario xml security for java 1.4.0

apache santuario xml security for java 1.5.2

apache santuario xml security for java 1.5.4

apache santuario xml security for java 1.5.3

apache santuario xml security for java 1.4.7

apache santuario xml security for java 1.5.0

apache santuario xml security for java 1.2.1

apache santuario xml security for java

apache santuario xml security for java 1.2.0

Vendor Advisories

Debian Bug report logs - #733938 libxml-security-java: CVE-2013-4517 Package: libxml-security-java; Maintainer for libxml-security-java is Debian Java Maintainers <pkg-java-maintainers@listsaliothdebianorg>; Source for libxml-security-java is src:libxml-security-java (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff & ...