CVE-2024-50614

TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/16, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRef.
References
Link Resource
https://github.com/leethomason/tinyxml2/issues/996 Exploit Issue Tracking
Configurations

Configuration 1 (hide)

cpe:2.3:a:tinyxml2_project:tinyxml2:*:*:*:*:*:*:*:*

History

04 Sep 2025, 16:42

Type Values Removed Values Added
References () https://github.com/leethomason/tinyxml2/issues/996 - () https://github.com/leethomason/tinyxml2/issues/996 - Exploit, Issue Tracking
CPE cpe:2.3:a:tinyxml2_project:tinyxml2:*:*:*:*:*:*:*:*
First Time Tinyxml2 Project
Tinyxml2 Project tinyxml2

Information

Published : 2024-10-27 22:15

Updated : 2025-09-04 16:42


NVD link : CVE-2024-50614

Mitre link : CVE-2024-50614

CVE.ORG link : CVE-2024-50614


JSON object : View

Products Affected

tinyxml2_project

  • tinyxml2
CWE
CWE-617

Reachable Assertion