CVE-2012-1147: Apple Mac OS X

Medium severity, CVSS 4.3. EPSS: 2.6% chance of exploitation in the next 30 days.

readfilemap.c in expat before 2.1.0 allows context-dependent attackers to cause a denial of service (file descriptor consumption) via a large number of crafted XML files.

Affected products

  • Apple Mac OS X: version 10.11.0 only; version 10.11.1 only
  • Libexpat Project Libexpat: up to and including 2.0.1; version 1.95.1 only; version 1.95.2 only; version 1.95.4 only; version 1.95.5 only; version 1.95.6 only; …

Published 2012-07-03. Last modified 2026-06-16.