#VU21434 XML Entity Expansion in Ghidra - CVE-2019-16941
Published: September 30, 2019 / Updated: January 6, 2023
Ghidra
National Security Agency
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to improper input validation when parsing XML files in the Bit Patterns Explorer feature in Features/BytePatterns/src/main/java/ghidra/bitpatterns/info/FileBitPatternInfoReader.java. A remote attacker can create a specially crafted XML document, trick the victim into opening it via the Read XML Files feature and execute arbitrary code on the system with privilege of the current user.