An issue was discovered in ezXML 0.8.3 through 0.8.6. The ezxml_parse_* functions mishandle XML entities, leading to an infinite loop in which memory allocations occur.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://sourceforge.net/p/ezxml/bugs/16/ | issue tracking exploit third party advisory |