Vulnerabilities > CVE-2022-40674 - Use After Free vulnerability in multiple products

047910
CVSS 8.1 - HIGH
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH

Summary

libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c.

Common Weakness Enumeration (CWE)

References