Back to search
CVE-2012-2871
Published: Aug 31, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
libxml2 2.9.0-rc1 and earlier, as used in Google Chrome before 21.0.1180.89, does not properly support a cast of an unspecified variable during handling of XSL transforms, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document, related to the _xmlNs data structure in include/libxml/tree.h.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
50838
third-party-advisory
x_refsource_SECUNIA
APPLE-SA-2013-10-22-8
vendor-advisory
x_refsource_APPLE
DSA-2555
vendor-advisory
x_refsource_DEBIAN
http://code.google.com/p/chromium/issues/detail?id=138673
x_refsource_CONFIRM
http://support.apple.com/kb/HT6001
x_refsource_CONFIRM
chrome-xsl-transforms-code-exec(78179)
vdb-entry
x_refsource_XF
54886
third-party-advisory
x_refsource_SECUNIA
http://support.apple.com/kb/HT5934
x_refsource_CONFIRM
openSUSE-SU-2012:1215
vendor-advisory
x_refsource_SUSE
https://chromiumcodereview.appspot.com/10824157
x_refsource_CONFIRM
MDVSA-2012:164
vendor-advisory
x_refsource_MANDRIVA
APPLE-SA-2013-09-18-2
vendor-advisory
x_refsource_APPLE
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now