Description
Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91 and other products, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2580-1 | libxml security update |
EUVD |
EUVD-2012-5057 | Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91 and other products, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document. |
Ubuntu USN |
USN-1656-1 | Libxml2 vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2024-08-06T20:58:02.682Z
Reserved: 2012-09-24T00:00:00.000Z
Link: CVE-2012-5134
No data.
Status : Deferred
Published: 2012-11-28T01:55:01.323
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-5134
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN