VYPR
High severity8.8NVD Advisory· Published Jan 1, 2022· Updated Jun 17, 2026

CVE-2021-45960

CVE-2021-45960

Description

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

56

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.