CVE-2026-32778

Description

libexpat before 2.7.5 allows a null pointer dereference in the function setContext on retry after an earlier ouf-of-memory condition.

Risk Information

Base Score
2.9
MODERATE
Vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
EPSS Score
Exploitation Probability
0.013

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Business Automation Workflow 24.0.1Windows
Multiple Vulnerabilities are affected in IBM Business Automation Workflow 25.0.1Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234