Vulnerability Description
A memory leak issue was discovered in Mini-XML v3.2 that could cause a denial of service. NOTE: testing reports are inconsistent, with some testers seeing the issue in both the 3.2 release and in the October 2021 development code, but others not seeing the issue in the 3.2 release
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mini-Xml Project | Mini-Xml | 3.2 |
Related Weaknesses (CWE)
References
- https://github.com/michaelrsweet/mxml/issues/286ExploitIssue TrackingThird Party Advisory
- https://github.com/michaelrsweet/mxml/issues/286ExploitIssue TrackingThird Party Advisory
FAQ
What is CVE-2021-42859?
CVE-2021-42859 is a vulnerability with a CVSS score of 7.5 (HIGH). A memory leak issue was discovered in Mini-XML v3.2 that could cause a denial of service. NOTE: testing reports are inconsistent, with some testers seeing the issue in both the 3.2 release and in the ...
How severe is CVE-2021-42859?
CVE-2021-42859 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-42859?
Check the references section above for vendor advisories and patch information. Affected products include: Mini-Xml Project Mini-Xml.