You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
mend-bolt-for-githubbot
changed the title
CVE-2024-45490 (Critical) detected in src3.1.5
CVE-2024-45490 (Critical) detected in 3p-expatv2.6.2-52fb19a
Nov 8, 2024
mend-bolt-for-githubbot
changed the title
CVE-2024-45490 (Critical) detected in 3p-expatv2.6.2-52fb19a
CVE-2024-45490 (Critical) detected in src3.1.5
Nov 10, 2024
mend-bolt-for-githubbot
changed the title
CVE-2024-45490 (Critical) detected in src3.1.5
CVE-2024-45490 (Critical) detected in 3p-expatv2.6.2-52fb19a
Nov 14, 2024
mend-bolt-for-githubbot
changed the title
CVE-2024-45490 (Critical) detected in 3p-expatv2.6.2-52fb19a
CVE-2024-45490 (Critical) detected in src3.1.5
Nov 15, 2024
mend-bolt-for-githubbot
changed the title
CVE-2024-45490 (Critical) detected in src3.1.5
CVE-2024-45490 (Critical) detected in 3p-expatv2.6.2-52fb19a
Nov 15, 2024
CVE-2024-45490 - Critical Severity Vulnerability
Vulnerable Library - 3p-expatv2.6.2-52fb19a
autobuild packaged libexpat
Library home page: https://github.com/AlchemyViewer/3p-expat.git
Found in HEAD commit: 816463d989cc5839c1cca2efb5bf2503408507fb
Found in base branches: stable/3.2, master
Vulnerable Source Files (1)
/contrib/expat/lib/xmlparse.c
Vulnerability Details
An issue was discovered in libexpat before 2.6.3. xmlparse.c does not reject a negative length for XML_ParseBuffer.
Publish Date: 2024-08-30
URL: CVE-2024-45490
CVSS 3 Score Details (9.8)
Base Score Metrics:
Suggested Fix
Type: Upgrade version
Origin: https://www.cve.org/CVERecord?id=CVE-2024-45490
Release Date: 2024-08-30
Fix Resolution: R_2_6_3
Step up your Open Source Security Game with Mend here
The text was updated successfully, but these errors were encountered: