← Back

CVE-2012-2921

nvd nist
Published: May 21, 2012Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Universal Feed Parser (aka feedparser or python-feedparser) before 5.1.2 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML ENTITY declaration in a non-ASCII encoded document.

Affected (14)

1 product
Feedparser
Configuration A
14 vulnerable
Vulnerable SoftwareAffected Versions
Mark Pilgrim
Up to 5.1.1
Version 3.0.1
Version 3.0
Version 3.1
Version 3.2
Version 3.3
Version 4.0.1
Version 4.0.2
Version 4.0
Version 4.1
Version 5.0.1
Version 5.0
Version 5.1.2
Version 5.1

Related CWEs

Timeline

No history available yet.