XML Entity Expansion in expat - CVE-2023-52426

 

XML Entity Expansion in expat - CVE-2023-52426

Published: February 7, 2024


Vulnerability identifier: #VU86231
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-52426
CWE-ID: CWE-776
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to recursive XML Entity Expansion if XML_DTD is undefined at compile time. A remote attacker can pass specially crafted input to the application and perform a denial of service (DoS) attack.


Affected software

expat
IBM Application Gateway
IBM VIOS
Amazon Linux AMI
IBM AIX
Slackware Linux
openEuler
Anolis OS
Fedora
Cognos Dashboards on Cloud Pak for Data
Telemetry Dashboard
Storage Defender - Resiliency Service
Liquidware
Citrix Workspace App
Webex App VDI
Data Lakehouse
Consul
Consul Enterprise
IBM Rational ClearCase
PowerProtect Data Manager
LANTIME Operating System Firmware (LTOS)
PowerScale OneFS
Cisco Jabber
Cisco Webex Meetings
VMware Horizon Client
IBM Tivoli Network Manager (ITNM)
HPE NonStop Virtual Tape Repository (VTR)
expat
expat-debugsource
expat-devel
expat-debuginfo
expat-help
expat-doc
expat-static
mingw-expat
Dell EMC NetWorker vProxy
NetWorker Management Console

How to mitigate CVE-2023-52426

Install updates from vendor's website.

expat - update to 2.6.0
Data Lakehouse - update to 1.1.0.0
Telemetry Dashboard - update to 1.1.0.6 on Thin OS 2405
Consul - addressed in versions 1.16.7, 1.17.4
Consul Enterprise - update to 1.18.1
Storage Defender - Resiliency Service - update to 2.0.11
Liquidware - update to 6.7.0.2.2 on Thin OS 2405
LANTIME Operating System Firmware (LTOS) - update to 7.08.010
Cisco Jabber - update to 14.3.0.308378.11 on Thin OS 2405
Citrix Workspace App - update to 24.2.0.65.17 on Thin OS 2405
Webex App VDI - update to 44.2.0.28744.1 on Thin OS 2405
Cisco Webex Meetings - update to 44.2.0.76.2 on Thin OS 2405
VMware Horizon Client - update to 2312.1.8.12.1.5 on Thin OS 2405
HPE NonStop Virtual Tape Repository (VTR) - update to T09644V01^AAK
expat - update to 2.2.9-11
expat-debugsource - update to 2.2.9-11
expat-devel - update to 2.2.9-11
expat-debuginfo - update to 2.2.9-11
expat-help - update to 2.2.9-11
expat - update to 2.5.0-1
expat - update to 2.5.0-6
expat-doc - update to 2.5.0-6
expat-devel - update to 2.5.0-6
expat-static - update to 2.5.0-6
expat - update to 2.6.0
expat - addressed in versions 2.6.0-1.fc38, 2.6.0-1.fc39
mingw-expat - addressed in versions 2.6.0-1.fc38, 2.6.0-1.fc39
IBM Tivoli Network Manager (ITNM) - update to 4.2.0.19
IBM Rational ClearCase - addressed in versions 9.1.0.8, 10.0.1.3, 11.0.0.3
PowerScale OneFS - addressed in versions 9.4.0.19, 9.5.1.0, 9.5.1.1, 9.7.1.2, 9.9.0.0
Dell EMC NetWorker vProxy - addressed in versions 19.11.0.5, 19.12.0.1
NetWorker Management Console - update to 19.12.0.1
PowerProtect Data Manager - update to 19.19.0-15

External References

Related Security Bulletins