In libexpat in Expat before 2.2.7, XML input including XML names that contain a large number of colons could make the XML parser consume a high amount of RAM and CPU resources while processing (enough to be usable for denial-of-service attacks).
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-20843.json"
[
{
"deprecated": false,
"signature_type": "Function",
"digest": {
"function_hash": "10718674393994758979083102855553023681",
"length": 670.0
},
"source": "https://github.com/libexpat/libexpat/commit/d3b78b42a2dcdea98e22625cfff67a49d47e6025",
"id": "CVE-2018-20843-74406d59",
"signature_version": "v1",
"target": {
"file": "expat/tests/runtests.c",
"function": "START_TEST"
}
},
{
"deprecated": false,
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"70970158302216444732948686873374648009",
"197734145770944038326200234670765972062",
"333002349092091346504095730741649465004",
"132190683235044997527211951942674695301"
]
},
"source": "https://github.com/libexpat/libexpat/commit/d3b78b42a2dcdea98e22625cfff67a49d47e6025",
"id": "CVE-2018-20843-ee80e572",
"signature_version": "v1",
"target": {
"file": "expat/tests/runtests.c"
}
}
]
[
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "12.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "14.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "16.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "18.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "18.10"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "19.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "8.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "9.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "29"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "30"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.1"
}
]
},
{
"events": [
{
"introduced": "5.7"
},
{
"last_affected": "5.7.6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "12.1.3.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "12.2.1.4.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "8.5.4"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "8.5.5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "8.15.0"
}
]
}
]