Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 17 Mar 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:libexpat_project:libexpat:*:*:*:*:*:*:*:* |
Tue, 17 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 17 Mar 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Libexpat Project
Libexpat Project libexpat |
|
| Vendors & Products |
Libexpat Project
Libexpat Project libexpat |
Tue, 17 Mar 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | libexpat: libexpat: Denial of Service via NULL pointer dereference after out-of-memory condition | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Mon, 16 Mar 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | libexpat before 2.7.5 allows a NULL pointer dereference in the function setContext on retry after an earlier ouf-of-memory condition. | |
| Weaknesses | CWE-476 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-03-17T14:39:21.950Z
Reserved: 2026-03-16T07:02:33.921Z
Link: CVE-2026-32778
Updated: 2026-03-17T14:39:17.823Z
Status : Analyzed
Published: 2026-03-16T14:19:44.970
Modified: 2026-03-17T15:52:53.160
Link: CVE-2026-32778
OpenCVE Enrichment
Updated: 2026-03-24T10:45:37Z