CVE-2023-34411
05.06.2023, 04:15
The xml-rs crate before 0.8.14 for Rust and Crab allows a denial of service (panic) via an invalid <! token (such as <!DOCTYPEs/%<!A nesting) in an XML document. The earliest affected version is 0.8.9.Enginsight
Vendor | Product | Version |
---|---|---|
xml_library_project | xml_library | 𝑥 < 0.8.14 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References