CVE-2013-2298
EPSS 1.6%
Description
Multiple stack-based buffer overflows in the XML parser in BOINC 7.x allow attackers to have unspecified impact via a crafted XML file, related to the scheduler.
How to fix CVE-2013-2298
To remediate CVE-2013-2298, upgrade the affected package to a fixed version below.
- Debian/boinc—upgrade to 7.0.65+dfsg-1 or later
Is CVE-2013-2298 being exploited?
Low — EPSS is 1.6%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 7.0.65+dfsg-1