You are here

CVE-2012-2870

Vincent (CVE) Danen's picture
libxslt 1.1.26 and earlier, as used in Google Chrome before 21.0.1180.89, does not properly manage memory, which might allow remote attackers to cause a denial of service (application crash) via a crafted XSLT expression that is not properly identified during XPath navigation, related to (1) the xsltCompileLocationPathPattern function in libxslt/pattern.c and (2) the xsltGenerateIdFunction function in libxslt/functions.c.

Details Source

Mitre

Public Date

2012-08-31 00:00:00

Impact

Low

Bugzilla

CVE-2012-2870 libxslt: Use-after-free when processing an invalid XPath expression

Bugzilla ID

852 937

CVSS Status

verified

Base Score

4.30

Base Metrics

AV:N/AC:M/Au:N/C:N/I:N/A:P

IAVA

2013-A-0031

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 6 (libxslt) RHSA-2012:1265 2012-09-13
Red Hat Enterprise Linux 5 (libxslt) RHSA-2012:1265 2012-09-13

CWE

CWE-416