CVE-2023-34411
05.06.2023, 04:15
The xml-rs crate before 0.8.14 for Rust and Crab allows a denial of service (panic) via an invalid <! token (such as <!DOCTYPEs/%<!A nesting) in an XML document. The earliest affected version is 0.8.9.Enginsight
| Vendor | Product | Version |
|---|---|---|
| xml_library_project | xml_library | 𝑥 < 0.8.14 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References