Vulnerability index

Browse CVEs

12 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ezxml MEDIUM 6.5
CVE-2022-30045

An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_decode() performs incorrect memory handling while parsing crafted XML files,…

No fix yet
Fix from $1,600 2022-05-17
Ezxml HIGH 8.1
CVE-2021-26220

The ezxml_toxml function in ezxml 0.8.6 and earlier is vulnerable to OOB write when opening XML file after exhausting the memory pool.

Fix: after 0.8.6
Fix from $1,950 2021-02-08
Ezxml HIGH 8.1
CVE-2021-26221

The ezxml_new function in ezXML 0.8.6 and earlier is vulnerable to OOB write when opening XML file after exhausting the memory pool.

Fix: after 0.8.6
Fix from $1,950 2021-02-08
Ezxml HIGH 8.1
CVE-2021-26222

The ezxml_new function in ezXML 0.8.6 and earlier is vulnerable to OOB write when opening XML file after exhausting the memory pool.

Fix: after 0.8.6
Fix from $1,950 2021-02-08
Ezxml MEDIUM 6.5
CVE-2019-20201

An issue was discovered in ezXML 0.8.3 through 0.8.6. The ezxml_parse_* functions mishandle XML entities, leading to an infinite loop in which memory…

Fix: after 0.8.6
Fix from $1,600 2019-12-31
Ezxml MEDIUM 6.5
CVE-2019-20202

An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_char_content() tries to use realloc on a block that was not allocated, leadi…

Fix: after 0.8.6
Fix from $1,600 2019-12-31
Ezxml MEDIUM 6.5
CVE-2019-20198

An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_ent_ok() mishandles recursion, leading to stack consumption for a crafted XM…

Fix: after 0.8.6
Fix from $1,600 2019-12-31
Ezxml MEDIUM 6.5
CVE-2019-20199

An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while parsing a crafted XML file, performs incorrect memory handling…

Fix: after 0.8.6
Fix from $1,600 2019-12-31
Ezxml MEDIUM 6.5
CVE-2019-20200

An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while parsing crafted a XML file, performs incorrect memory handling…

Fix: after 0.8.6
Fix from $1,600 2019-12-31
Ezxml HIGH 7.5
CVE-2019-20006

An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_char_content puts a pointer to the internal address of a larger block as xml…

Fix: after 0.8.6
Fix from $1,950 2019-12-26
Ezxml MEDIUM 6.5
CVE-2019-20005

An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while parsing a crafted XML file, performs incorrect memory handling…

Fix: after 0.8.6
Fix from $1,600 2019-12-26
Ezxml MEDIUM 6.5
CVE-2019-20007

An issue was discovered in ezXML 0.8.2 through 0.8.6. The function ezxml_str2utf8, while parsing a crafted XML file, performs zero-length reallocatio…

Fix: after 0.8.6
Fix from $1,600 2019-12-26