CVE-2015-0252
internal/XMLReader.cpp in Apache Xerces-C before 3.1.2 allows remote attackers to cause a denial of service (segmentation fault and crash) via crafted XML data.
- Affected products
- Alt Linux, Apache Xerces-C, Centos, Red Hat, Suse
- Debian Debian Linux
- = 7.1
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 39.7% (99th percentile)
- Weakness
- CWE-20
- NVD status
- Modified
- Published
- 2015-03-24
CVE-2015-0252 at NVD
4 known exploits for CVE-2015-0252
Proof-of-concept code and exploit modules indexed by Sploitus