CVE-2013-2156
Apache Santuario XML Security for C++ Heap Overflow
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Heap-based buffer overflow in the Exclusive Canonicalization functionality (xsec/canon/XSECC14n20010315.cpp) in Apache Santuario XML Security for C++ (aka xml-security-c) before 1.7.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PrefixList attribute.
Desbordamiento de búfer basado en memoria dinámica en la funcionalidad Exclusive Canonicalization (xsec/canon/XSECC14n20010315.cpp) en Apache Santuario XML Security para C++ (aka xml-security-c) anterior a 1.7.1 , permite a atacantes remotos provocar una denegación de servicio (caída) y posiblemente la ejecución de código arbitrario a través de un atributo PrefixList modificado.
A heap overflow exists in the processing of the PrefixList attribute optionally used in conjunction with Exclusive Canonicalization, potentially allowing arbitrary code execution. If verification of the signature occurs prior to actual evaluation of a signing key, this could be exploited by an unauthenticated attacker. Apache Santuario XML Security for C++ library versions prior to 1.7.1 are affected.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2013-02-19 CVE Reserved
- 2013-06-18 CVE Published
- 2024-08-06 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (7)
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://svn.apache.org/viewvc?view=revision&revision=1493961 | 2023-11-07 |
URL | Date | SRC |
---|---|---|
http://www.debian.org/security/2013/dsa-2710 | 2023-11-07 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | <= 1.7.0 Search vendor "Apache" for product "Xml Security For C\+\+" and version " <= 1.7.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 0.1.0 Search vendor "Apache" for product "Xml Security For C\+\+" and version "0.1.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 0.2.0 Search vendor "Apache" for product "Xml Security For C\+\+" and version "0.2.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.1.0 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.1.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.2.0 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.2.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.2.1 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.2.1" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.3.0 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.3.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.3.1 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.3.1" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.4.0 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.4.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.5.0 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.5.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.5.1 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.5.1" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.6.0 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.6.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Xml Security For C\+\+ Search vendor "Apache" for product "Xml Security For C\+\+" | 1.6.1 Search vendor "Apache" for product "Xml Security For C\+\+" and version "1.6.1" | - |
Affected
|