[Expat-discuss] Anyone know about the recent security issue in eXpat?

Nick MacDonald nickmacd at gmail.com
Fri Nov 6 03:43:54 CET 2009


Anyone know anything about this, and what the change is, and if there
will be an update from 2.0.1 to 2.0.2 or similar?


http://seclists.org/fulldisclosure/2009/Oct/344

Peter Valchev discovered an error in expat, an XML parsing C library,
when parsing certain UTF-8 sequences, which can be exploited to crash an
application using the library.


More information about the Expat-discuss mailing list