apache xerces-c CVE-2017-12627 is a vulnerability in Apache Xerces C
Published on March 1, 2018

In Apache Xerces-C XML Parser library before 3.2.1, processing of external DTD paths can result in a null pointer dereference under certain conditions.

NVD


Products Associated with CVE-2017-12627

Want to know whenever a new CVE is published for Apache Xerces C? stack.watch will email you.

 

Affected Versions

Apache Software Foundation Apache Xerces C++ Version < 3.2.1 is affected by CVE-2017-12627

Exploit Probability

EPSS
5.32%
Percentile
89.86%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.