CVE-2025-59375
EUVD-2025-2914815.09.2025, 03:15
libexpat in Expat before 2.7.2 allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| libexpat_project | libexpat | 𝑥 < 2.7.2 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| Siemens | RUGGEDCOM RST2428P | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XC-300\/XR-300\/XC-400\/XR-500WG\/XR-500 family | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XCH328 | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XCM324 | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XCM328 | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XCM332 | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRH334 \(24 V DC\, 8xFO\, CC\) | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRM334 \(230 V AC\, 12xFO\) | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRM334 \(230 V AC\, 8xFO\) | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRM334 \(230V AC\, 2x10G\, 24xSFP\, 8xSFP\+\) | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRM334 \(24 V DC\, 12xFO\) | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRM334 \(24 V DC\, 8xFO\) | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRM334 \(24V DC\, 2x10G\, 24xSFP\, 8xSFP\+\) | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRM334 \(2x230 V AC\, 12xFO\) | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRM334 \(2x230 V AC\, 8xFO\) | 𝑥 < V3.3 | ADP |
| Siemens | SCALANCE XRM334 \(2x230V AC\, 2x10G\, 24xSFP\, 8xSFP\+\) | 𝑥 < V3.3 | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518F-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518F-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIPLUS S7-1500 CPU 1518-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
Debian Releases
Debian Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| expat |
| ||||||||||||||||
| firefox |
| ||||||||||||||||
| firefox-esr |
| ||||||||||||||||
| thunderbird |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| MozillaFirefox |
| ||||||||||||||||||||||||||||
| MozillaFirefox-devel |
| ||||||||||||||||||||||||||||
| MozillaFirefox-translations-common |
| ||||||||||||||||||||||||||||
| MozillaFirefox-translations-other |
| ||||||||||||||||||||||||||||
| MozillaThunderbird |
| ||||||||||||||||||||||||||||
| MozillaThunderbird-translations-common |
| ||||||||||||||||||||||||||||
| MozillaThunderbird-translations-other |
| ||||||||||||||||||||||||||||
| expat |
| ||||||||||||||||||||||||||||
| libexpat-devel |
| ||||||||||||||||||||||||||||
| libexpat1 |
| ||||||||||||||||||||||||||||
| libexpat1-32bit |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| expat |
| ||||||||||||||
| expat-devel |
| ||||||||||||||
| mingw32-expat |
| ||||||||||||||
| mingw32-fontconfig |
| ||||||||||||||
| mingw64-expat |
| ||||||||||||||
| mingw64-fontconfig |
| ||||||||||||||
| python3.12 |
| ||||||||||||||
| python3.12-debug |
| ||||||||||||||
| python3.12-devel |
| ||||||||||||||
| python3.12-idle |
| ||||||||||||||
| python3.12-libs |
| ||||||||||||||
| python3.12-rpm-macros |
| ||||||||||||||
| python3.12-test |
| ||||||||||||||
| python3.12-tkinter |
| ||||||||||||||
| spice-client-win-x64 |
| ||||||||||||||
| spice-client-win-x86 |
|
References