Double free vulnerability in libxslt, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XSL transforms.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade libxslt-pythonUpgrade libxsltUpgrade libxslt-devel | Dec 1, 2016 | Sep 26, 2012 |
| Debian | — | Upgrade libxslt | Jul 30, 2024 | Sep 26, 2012 |
| Gentoo Linux | — | Upgrade dev-libs/libxslt. | Oct 30, 2017 | Sep 26, 2012 |
| Google Chrome | — | Upgrade to the latest version of Google Chrome | Sep 27, 2012 | Sep 25, 2012 |
| Oracle Solaris | — | Upgrade library/python-2/libxsl-27 to version 1.1.26-0.175.1.4.0.4.0 on Solaris 11.1Upgrade library/python-2/libxsl-26 to version 1.1.26-0.175.1.4.0.4.0 on Solaris 11.1Upgrade library/libxslt to version 1.1.26-0.175.1.4.0.4.0 on Solaris 11.1 | May 29, 2017 | Sep 26, 2012 |
| Suse | — | Upgrade chromium | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade libxslt1.1 | Nov 8, 2024 | Sep 26, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub