ID

VAR-202408-2626


CVE

CVE-2024-45490


TITLE

libexpat project  of  libexpat  In  XML  External entity vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2024-007278

DESCRIPTION

An issue was discovered in libexpat before 2.6.3. xmlparse.c does not reject a negative length for XML_ParseBuffer. libexpat project of libexpat for, XML There is a vulnerability in an external entity.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The RUGGEDCOM RST2428P is a Layer 2 Ethernet switch based on the SINEC operating system with up to 28 non-blocking interfaces. SCALANCE X switches are used to connect industrial components such as programmable logic controllers (PLCs) or human-machine interfaces (HMIs). Multiple vulnerabilities in third-party components of Siemens' SINEC OS could allow attackers to gain control of the server. ========================================================================== Ubuntu Security Notice USN-7001-2 September 17, 2024 libxmltok vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.04 LTS Summary: Several security issues were fixed in libxmltok. Software Description: - libxmltok: XML Parser Toolkit, developer libraries Details: USN-7001-1 fixed vulnerabilities in xmltol library. This update provides the corresponding updates for Ubuntu 24.04 LTS. Original advisory details: Shang-Hung Wan discovered that Expat, contained within the xmltok library, did not properly handle certain function calls when a negative input length was provided. An attacker could use this issue to cause a denial of service or possibly execute arbitrary code. (CVE-2024-45490) Shang-Hung Wan discovered that Expat, contained within the xmltok library, did not properly handle the potential for an integer overflow on 32-bit platforms. An attacker could use this issue to cause a denial of service or possibly execute arbitrary code. (CVE-2024-45491) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.04 LTS libxmltok1t64 1.2-4.1ubuntu2.24.0.4.1+esm1 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7001-2 https://ubuntu.com/security/notices/USN-7001-1 CVE-2024-45490, CVE-2024-45491 . For the stable distribution (bookworm), these problems have been fixed in version 2.5.0-1+deb12u1. We recommend that you upgrade your expat packages. For the detailed security status of expat please refer to its security tracker page at: https://security-tracker.debian.org/tracker/expat Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmbp6EIACgkQEMKTtsN8 Tjb+0hAAsAHl9didzh1S8vHaLH8P8I1XT0302RGP1N6r4BKvjEozuTKml28F3NEK 9IplBZXH8GM6tnF1/gRJf5Dp4YsL7H+nYUjbkZEdLM2TztRoy4wnITxUwqQ7q1ly /bWMuyaoUn9jZu6SA+yEL68DtbXpFbs8IAOE3kqPsbcWvJ7O7LU3Ajjw5aWYwxV0 kdVyI67rBkfWAdyFRjlkxF62+ieR9sjpKNDKK1nmO+I8eEF5E/WOXsfPlzcKwax2 mMhisTscEIvaBSKCaQICCojYbvju8KW8B+NsJMsyRbPoimTyzE2n4VBk0ZNHjv+w sIddwdgzXpWHHRbVtl6zjiZvzxUtphp6tHstxoW8YZQKkQiwqqlpONqXKWG1yR0o pltUr7JjTylDo41M21yK/WizdxFkdrUJi4drKTONekvbhUEaTLaoR/ywYi0Za7T0 sUguAJk25id2px3LdTvMhQywTNmL103LkFfq1WIXL9x+yzYdKos8P3qu9DIaIqms R4dy2xMhiJwVyQXi74Tte9h5n6FXET1Z8MoyxFOVI6SQ5FBXJMmL48r6Uwhb09tH ZL2VNUequSC2L4uGozFFaHvr3M606srokRbo18XvNTNUvApJjAFt/WTnOjKUDuJM 08PjLw6brD/XBR6p/NKX8vMQmmXClyKwB97SG1MYu/MfdJK/7wQ= =bEe8 -----END PGP SIGNATURE----- . The following advisory data is extracted from: https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_9610.json Red Hat officially shut down their mailing list notifications October 10, 2023. Due to this, Packet Storm has recreated the below data as a reference point to raise awareness. It must be noted that due to an inability to easily track revision updates without crawling Red Hat's archive, these advisories are single notifications and we strongly suggest that you visit the Red Hat provided links to ensure you have the latest information available if the subject matter listed pertains to your environment. - Packet Storm Staff ==================================================================== Red Hat Security Advisory Synopsis: Moderate: OpenShift Container Platform 4.17.5 security update Advisory ID: RHSA-2024:9610-03 Product: Red Hat OpenShift Enterprise Advisory URL: https://access.redhat.com/errata/RHSA-2024:9610 Issue date: 2024-11-25 Revision: 03 CVE Names: CVE-2024-45490 ==================================================================== Summary: Red Hat OpenShift Container Platform release 4.17.5 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.17. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description: Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the container images for Red Hat OpenShift Container Platform 4.17.5. See the following advisory for the RPM packages for this release: https://access.redhat.com/errata/RHSA-2024:9613 Space precludes documenting all of the container images in this advisory. See the following Release Notes documentation, which will be updated shortly for this release, for details about these changes: https://docs.openshift.com/container-platform/4.17/release_notes/ocp-4-17-release-notes.html Security Fix(es): * libexpat: Negative Length Parsing Vulnerability in libexpat (CVE-2024-45490) * libexpat: Integer Overflow or Wraparound (CVE-2024-45491) * libexpat: integer overflow (CVE-2024-45492) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. All OpenShift Container Platform 4.17 users are advised to upgrade to these updated packages and images when they are available in the appropriate release channel. To check for available updates, use the OpenShift CLI (oc) or web console. Instructions for upgrading a cluster are available at https://docs.openshift.com/container-platform/4.17/updating/updating_a_cluster/updating-cluster-cli.html Solution: CVEs: CVE-2024-45490 References: https://access.redhat.com/security/updates/classification/#moderate https://bugzilla.redhat.com/show_bug.cgi?id=2308615 https://bugzilla.redhat.com/show_bug.cgi?id=2308616 https://bugzilla.redhat.com/show_bug.cgi?id=2308617 https://issues.redhat.com/browse/OCPBUGS-16141 https://issues.redhat.com/browse/OCPBUGS-42835 https://issues.redhat.com/browse/OCPBUGS-42879 https://issues.redhat.com/browse/OCPBUGS-42931 https://issues.redhat.com/browse/OCPBUGS-42949 https://issues.redhat.com/browse/OCPBUGS-42964 https://issues.redhat.com/browse/OCPBUGS-43427 https://issues.redhat.com/browse/OCPBUGS-43657 https://issues.redhat.com/browse/OCPBUGS-43667 https://issues.redhat.com/browse/OCPBUGS-43690 https://issues.redhat.com/browse/OCPBUGS-43778 https://issues.redhat.com/browse/OCPBUGS-43972 https://issues.redhat.com/browse/OCPBUGS-44227 https://issues.redhat.com/browse/OCPBUGS-44357 https://issues.redhat.com/browse/OCPBUGS-44452

Trust: 2.88

sources: NVD: CVE-2024-45490 // JVNDB: JVNDB-2024-007278 // CNVD: CNVD-2025-19346 // PACKETSTORM: 181487 // PACKETSTORM: 181486 // PACKETSTORM: 181587 // PACKETSTORM: 181767 // PACKETSTORM: 181640 // PACKETSTORM: 181604 // PACKETSTORM: 181605 // PACKETSTORM: 182778

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2025-19346

AFFECTED PRODUCTS

vendor:libexpatmodel:libexpatscope:ltversion:2.6.3

Trust: 1.0

vendor:libexpatmodel:libexpatscope: - version: -

Trust: 0.8

vendor:libexpatmodel:libexpatscope:eqversion:2.6.3

Trust: 0.8

vendor:libexpatmodel:libexpatscope:eqversion: -

Trust: 0.8

vendor:siemensmodel:ruggedcom rst2428pscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:scalance xc-300/xr-300/xc-400/xr-500wg/xr-500 familyscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:scalance xcm-/xrm-/xch-/xrh-300 familyscope:ltversion:v3.1

Trust: 0.6

sources: CNVD: CNVD-2025-19346 // JVNDB: JVNDB-2024-007278 // NVD: CVE-2024-45490

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2024-45490
value: HIGH

Trust: 1.0

134c704f-9b21-4f2e-91b3-4a467353bcc0: CVE-2024-45490
value: CRITICAL

Trust: 1.0

NVD: CVE-2024-45490
value: CRITICAL

Trust: 0.8

CNVD: CNVD-2025-19346
value: HIGH

Trust: 0.6

CNVD: CNVD-2025-19346
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

nvd@nist.gov: CVE-2024-45490
baseSeverity: HIGH
baseScore: 7.5
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 3.6
version: 3.1

Trust: 1.0

134c704f-9b21-4f2e-91b3-4a467353bcc0: CVE-2024-45490
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 5.9
version: 3.1

Trust: 1.0

NVD: CVE-2024-45490
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: CNVD: CNVD-2025-19346 // JVNDB: JVNDB-2024-007278 // NVD: CVE-2024-45490 // NVD: CVE-2024-45490

PROBLEMTYPE DATA

problemtype:CWE-611

Trust: 1.0

problemtype:CWE-190

Trust: 1.0

problemtype:XML Improper restriction of external entity references (CWE-611) [NVD evaluation ]

Trust: 0.8

sources: JVNDB: JVNDB-2024-007278 // NVD: CVE-2024-45490

TYPE

arbitrary

Trust: 0.3

sources: PACKETSTORM: 181587 // PACKETSTORM: 181604 // PACKETSTORM: 181605

PATCH

title:Patch for Multiple vulnerabilities in Siemens SINEC OS third-party componentsurl:https://www.cnvd.org.cn/patchInfo/show/723071

Trust: 0.6

sources: CNVD: CNVD-2025-19346

EXTERNAL IDS

db:NVDid:CVE-2024-45490

Trust: 3.4

db:SIEMENSid:SSA-613116

Trust: 1.6

db:SIEMENSid:SSA-082556

Trust: 1.0

db:JVNid:JVNVU93117073

Trust: 0.8

db:JVNid:JVNVU91160009

Trust: 0.8

db:JVNid:JVNVU96443907

Trust: 0.8

db:ICS CERTid:ICSA-25-162-05

Trust: 0.8

db:ICS CERTid:ICSA-25-259-02

Trust: 0.8

db:ICS CERTid:ICSA-24-317-01

Trust: 0.8

db:JVNDBid:JVNDB-2024-007278

Trust: 0.8

db:CNVDid:CNVD-2025-19346

Trust: 0.6

db:PACKETSTORMid:181487

Trust: 0.1

db:PACKETSTORMid:181486

Trust: 0.1

db:PACKETSTORMid:181587

Trust: 0.1

db:PACKETSTORMid:181767

Trust: 0.1

db:PACKETSTORMid:181640

Trust: 0.1

db:PACKETSTORMid:181604

Trust: 0.1

db:PACKETSTORMid:181605

Trust: 0.1

db:PACKETSTORMid:182778

Trust: 0.1

sources: CNVD: CNVD-2025-19346 // PACKETSTORM: 181487 // PACKETSTORM: 181486 // PACKETSTORM: 181587 // PACKETSTORM: 181767 // PACKETSTORM: 181640 // PACKETSTORM: 181604 // PACKETSTORM: 181605 // PACKETSTORM: 182778 // JVNDB: JVNDB-2024-007278 // NVD: CVE-2024-45490

REFERENCES

url:https://github.com/libexpat/libexpat/issues/887

Trust: 1.8

url:https://github.com/libexpat/libexpat/pull/890

Trust: 1.8

url:https://cert-portal.siemens.com/productcert/html/ssa-613116.html

Trust: 1.6

url:https://nvd.nist.gov/vuln/detail/cve-2024-45490

Trust: 1.6

url:https://security.netapp.com/advisory/ntap-20241018-0004/

Trust: 1.0

url:https://cert-portal.siemens.com/productcert/html/ssa-082556.html

Trust: 1.0

url:https://lists.debian.org/debian-lts-announce/2024/09/msg00036.html

Trust: 1.0

url:http://seclists.org/fulldisclosure/2024/dec/8

Trust: 1.0

url:http://seclists.org/fulldisclosure/2024/dec/6

Trust: 1.0

url:http://seclists.org/fulldisclosure/2024/dec/10

Trust: 1.0

url:http://seclists.org/fulldisclosure/2024/dec/12

Trust: 1.0

url:http://seclists.org/fulldisclosure/2024/dec/7

Trust: 1.0

url:https://jvn.jp/vu/jvnvu91160009/

Trust: 0.8

url:https://jvn.jp/vu/jvnvu96443907/

Trust: 0.8

url:https://jvn.jp/vu/jvnvu93117073/index.html

Trust: 0.8

url:https://www.cisa.gov/news-events/ics-advisories/icsa-24-317-01

Trust: 0.8

url:https://www.cisa.gov/news-events/ics-advisories/icsa-25-162-05

Trust: 0.8

url:https://www.cisa.gov/news-events/ics-advisories/icsa-25-259-02

Trust: 0.8

url:https://nvd.nist.gov/vuln/detail/cve-2024-45491

Trust: 0.3

url:https://access.redhat.com/security/updates/classification/#moderate

Trust: 0.3

url:https://bugzilla.redhat.com/show_bug.cgi?id=2308617

Trust: 0.3

url:https://bugzilla.redhat.com/show_bug.cgi?id=2308616

Trust: 0.3

url:https://bugzilla.redhat.com/show_bug.cgi?id=2308615

Trust: 0.3

url:https://ubuntu.com/security/notices/usn-7001-1

Trust: 0.2

url:https://ubuntu.com/security/notices/usn-7000-1

Trust: 0.2

url:https://access.redhat.com/articles/11258

Trust: 0.2

url:https://launchpad.net/ubuntu/+source/expat/2.2.9-1ubuntu0.7

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/expat/2.6.1-2ubuntu0.1

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-7001-2

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2024:6989

Trust: 0.1

url:https://access.redhat.com/security/data/csaf/v2/advisories/2024/rhsa-2024_6989.json

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2024:6754

Trust: 0.1

url:https://access.redhat.com/security/data/csaf/v2/advisories/2024/rhsa-2024_6754.json

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-7000-2

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/expat/2.4.7-1ubuntu0.4

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-45492

Trust: 0.1

url:https://www.debian.org/security/faq

Trust: 0.1

url:https://security-tracker.debian.org/tracker/expat

Trust: 0.1

url:https://www.debian.org/security/

Trust: 0.1

url:https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_9610.json

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-42931

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2024:9613

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-43427

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-44357

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-42964

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2024:9610

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-43657

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-42949

Trust: 0.1

url:https://docs.openshift.com/container-platform/4.17/release_notes/ocp-4-17-release-notes.html

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-44227

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-16141

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-44452

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-43690

Trust: 0.1

url:https://docs.openshift.com/container-platform/4.17/updating/updating_a_cluster/updating-cluster-cli.html

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-43778

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-43667

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-42879

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-43972

Trust: 0.1

url:https://issues.redhat.com/browse/ocpbugs-42835

Trust: 0.1

sources: CNVD: CNVD-2025-19346 // PACKETSTORM: 181487 // PACKETSTORM: 181486 // PACKETSTORM: 181587 // PACKETSTORM: 181767 // PACKETSTORM: 181640 // PACKETSTORM: 181604 // PACKETSTORM: 181605 // PACKETSTORM: 182778 // JVNDB: JVNDB-2024-007278 // NVD: CVE-2024-45490

CREDITS

Ubuntu

Trust: 0.4

sources: PACKETSTORM: 181487 // PACKETSTORM: 181486 // PACKETSTORM: 181587 // PACKETSTORM: 181604

SOURCES

db:CNVDid:CNVD-2025-19346
db:PACKETSTORMid:181487
db:PACKETSTORMid:181486
db:PACKETSTORMid:181587
db:PACKETSTORMid:181767
db:PACKETSTORMid:181640
db:PACKETSTORMid:181604
db:PACKETSTORMid:181605
db:PACKETSTORMid:182778
db:JVNDBid:JVNDB-2024-007278
db:NVDid:CVE-2024-45490

LAST UPDATE DATE

2026-06-18T20:44:20.144000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2025-19346date:2025-08-22T00:00:00
db:JVNDBid:JVNDB-2024-007278date:2025-09-19T07:36:00
db:NVDid:CVE-2024-45490date:2026-05-12T12:17:10.563

SOURCES RELEASE DATE

db:CNVDid:CNVD-2025-19346date:2025-08-12T00:00:00
db:PACKETSTORMid:181487date:2024-09-12T14:53:00
db:PACKETSTORMid:181486date:2024-09-12T14:51:59
db:PACKETSTORMid:181587date:2024-09-17T15:37:02
db:PACKETSTORMid:181767date:2024-09-24T13:58:28
db:PACKETSTORMid:181640date:2024-09-19T13:38:11
db:PACKETSTORMid:181604date:2024-09-18T14:28:58
db:PACKETSTORMid:181605date:2024-09-18T14:29:17
db:PACKETSTORMid:182778date:2024-11-25T14:17:33
db:JVNDBid:JVNDB-2024-007278date:2024-09-05T00:00:00
db:NVDid:CVE-2024-45490date:2024-08-30T03:15:03.757