CVE-2023-37536
Summary
| CVE | CVE-2023-37536 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-10-11 07:15:00 UTC |
| Updated | 2023-12-31 14:15:00 UTC |
| Description | An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP request. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 200056 Ubuntu Security Notification for Xerces-C++ Vulnerabilities (USN-6590-1)
- 284654 Fedora Security Update for mingw (FEDORA-2023-1332ed94a7)
- 284841 Fedora Security Update for xerces (FEDORA-2023-52ba628e03)
- 285073 Fedora Security Update for xerces (FEDORA-2023-817ecc703f)
- 356610 Amazon Linux Security Advisory for xerces-c : ALAS2-2023-2327
- 6000416 Debian Security Update for xerces-c (DLA 3704-1)
- 755330 SUSE Enterprise Linux Security Update for xerces-c (SUSE-SU-2023:4543-1)
- 755355 SUSE Enterprise Linux Security Update for xerces-c (SUSE-SU-2023:4586-1)
- 755384 SUSE Enterprise Linux Security Update for xerces-c (SUSE-SU-2023:4715-1)
- 755385 SUSE Enterprise Linux Security Update for xerces-c (SUSE-SU-2023:4715-1)