CVE Database
/

CVE-2016-1684

Back to search

CVE-2016-1684

Published: Jun 5, 2016

Modified: Aug 5, 2024

PUBLISHED

Description

numbers.c in libxslt before 1.1.29, as used in Google Chrome before 51.0.2704.63, mishandles the i format token for xsl:number data, which allows remote attackers to cause a denial of service (integer overflow or resource consumption) or possibly have unspecified other impact via a crafted document.

VendorProductVersions

n/a

n/a

affected
n/a

References

https://crbug.com/583171
x_refsource_CONFIRM
DSA-3605
vendor-advisory
x_refsource_DEBIAN
90876
vdb-entry
x_refsource_BID
APPLE-SA-2016-07-18-4
vendor-advisory
x_refsource_APPLE
APPLE-SA-2016-07-18-3
vendor-advisory
x_refsource_APPLE
APPLE-SA-2016-07-18-2
vendor-advisory
x_refsource_APPLE
openSUSE-SU-2016:1496
vendor-advisory
x_refsource_SUSE
1035981
vdb-entry
x_refsource_SECTRACK
DSA-3590
vendor-advisory
x_refsource_DEBIAN
USN-2992-1
vendor-advisory
x_refsource_UBUNTU
openSUSE-SU-2016:1430
vendor-advisory
x_refsource_SUSE
APPLE-SA-2016-07-18-1
vendor-advisory
x_refsource_APPLE
APPLE-SA-2016-07-18-6
vendor-advisory
x_refsource_APPLE
RHSA-2016:1190
vendor-advisory
x_refsource_REDHAT
GLSA-201607-07
vendor-advisory
x_refsource_GENTOO
openSUSE-SU-2016:1433
vendor-advisory
x_refsource_SUSE
FEDORA-2019-320d5295fc
vendor-advisory
x_refsource_FEDORA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now