Skip to main content
Version: latest

CVE-2022-23990

CVE Details

CVE-2022-23990

Last Update

10/25/24

NIST CVE Summary

Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function.

Our Official Summary

This vulnerability is reported on several 3rd party images used by the product. A new fixed version of the image is available by upgrading to 4.4.18.

CVE Severity

7.5

Status

Ongoing

Affected Products & Versions

  • Palette VerteX airgap 4.4.14

Revision History

  • 1.0 08/16/2024 Initial Publications
  • 2.0 08/17/2024 Added Palette VerteX airgap 4.4.14 to Affected Products
  • 3.0 09/25/2024 CVE remediated in Palette VerteX airgap 4.4.18