In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations. (CVE-2022-43680)
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2022-0409.json"