** DISPUTED ** TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::Parse function in libtinyxml2.so. NOTE: The tinyxml2 developers have determined that the reported overflow is due to improper use of the library and not a vulnerability in tinyxml2.
References
Configurations
Information
Published : 2018-05-16 08:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-11210
Mitre link : CVE-2018-11210
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
tinyxml2_project
- tinyxml2