| Name | CVE-2004-1575 |
| Description | The XML parser in Xerces-C++ 2.5.0 allows remote attackers to cause a denial of service (CPU consumption) via XML attributes in a crafted XML document. |
| Source | CVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
The information below is based on the following data on fixed versions.
| Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
|---|
| xerces21 | source | (unstable) | (not affected) | | | |
| xerces23 | source | (unstable) | (not affected) | | | |
| xerces24 | source | (unstable) | 2.4.0-4 | | | |
| xerces25 | source | (unstable) | 2.5.0-4 | | | |
Notes
- xerces23 <not-affected> (not affected, see bug #296432)
- xerces21 <not-affected> (not affected, see bug #296466)