Back

CRITICAL

UIKit0 libplist XML xplist.c plist_from_xml xml external entity reference

Published Feb 21, 2023

Description

A vulnerability classified as problematic has been found in UIKit0 libplist 1.12. This affects the function plist_from_xml of the file src/xplist.c of the component XML Handler. The manipulation leads to xml external entity reference. The patch is named c086cb139af7c82845f6d565e636073ff4b37440. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-221499.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Feb 21, 2023
Updated Aug 6, 2024
Reserved Feb 19, 2023
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Feb 21, 2023