CVE Database
/

CVE-2011-1944

Back to search

CVE-2011-1944

Published: Sep 2, 2011

Modified: Aug 6, 2024

PUBLISHED

Description

Integer overflow in xpath.c in libxml2 2.6.x through 2.6.32 and 2.7.x through 2.7.8, and libxml 1.8.16 and earlier, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted XML file that triggers a heap-based buffer overflow when adding a new namespace node, related to handling of XPath expressions.

VendorProductVersions

n/a

n/a

affected
n/a

References

48056
vdb-entry
x_refsource_BID
44711
third-party-advisory
x_refsource_SECUNIA
MDVSA-2011:131
vendor-advisory
x_refsource_MANDRIVA
HPSBMU02786
vendor-advisory
x_refsource_HP
openSUSE-SU-2011:0839
vendor-advisory
x_refsource_SUSE
APPLE-SA-2012-09-19-1
vendor-advisory
x_refsource_APPLE
RHSA-2013:0217
vendor-advisory
x_refsource_REDHAT
RHSA-2011:1749
vendor-advisory
x_refsource_REDHAT
DSA-2255
vendor-advisory
x_refsource_DEBIAN
73248
vdb-entry
x_refsource_OSVDB
FEDORA-2011-7856
vendor-advisory
x_refsource_FEDORA
SSRT100877
vendor-advisory
x_refsource_HP
APPLE-SA-2012-05-09-1
vendor-advisory
x_refsource_APPLE
USN-1153-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2011-1944 - Security Vulnerability | QwikSec