CVE-2016-0729 PUBLISHED

Multiple buffer overflows in (1) internal/XMLReader.cpp, (2) util/XMLURL.cpp, and (3) util/XMLUri.cpp in the XML Parser library in Apache Xerces-C before 3.1.3 allow remote attackers to cause a denial of service (segmentation fault or memory corruption) or possibly execute arbitrary code via a crafted document.

EPSS 23.02% · 95.9th percentile

Risk Scores

EPSS Score
23.02%
95.9th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSxerces-c0, 3.1.1-3, 3.1.1-3ubuntu1

Timeline

References

Open in Interactive Console →