Name | CVE-2004-1575 |
Description | The XML parser in Xerces-C++ 2.5.0 allows remote attackers to cause a denial of service (CPU consumption) via XML attributes in a crafted XML document. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|
xerces21 | source | (unstable) | (not affected) | | | |
xerces23 | source | (unstable) | (not affected) | | | |
xerces24 | source | (unstable) | 2.4.0-4 | | | |
xerces25 | source | (unstable) | 2.5.0-4 | | | |
Notes
- xerces23 <not-affected> (not affected, see bug #296432)
- xerces21 <not-affected> (not affected, see bug #296466)