Off-by-one error in libxml2, as used in Google Chrome before 19.0.1084.46 and other products, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via unknown vectors.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Ios | — | Upgrade to the latest version of Apple iOS | Oct 8, 2014 | May 15, 2012 |
| Apple Itunes | — | Upgrade Apple iTunes to the latest version | Aug 28, 2015 | May 15, 2012 |
| Centos_linux | — | Upgrade libxml2-develUpgrade mingw32-libxml2Upgrade mingw32-libxml2-staticUpgrade libxml2Upgrade libxml2-staticUpgrade libxml2-python | Dec 1, 2016 | May 15, 2012 |
| Debian | — | Upgrade libxml2 | Jul 30, 2024 | May 16, 2012 |
| Gentoo Linux | — | Upgrade dev-libs/libxml2. | Oct 30, 2017 | May 15, 2012 |
| Google Chrome | — | Upgrade to the latest version of Google Chrome | Jun 11, 2012 | May 15, 2012 |
| Oracle Solaris | — | Upgrade libxml2 to version 2.7.6-0.175.0.10.0.4.0 on Solaris 11.0 | May 29, 2017 | May 15, 2012 |
| Oracle_linux | — | Upgrade libxml2-pythonUpgrade mingw32-libxml2-staticUpgrade libxml2Upgrade mingw32-libxml2Upgrade libxml2-staticUpgrade libxml2-devel | Oct 16, 2024 | May 16, 2012 |
| Suse | — | Upgrade chromium-debugsourceUpgrade libxml2-debuginfo-x86Upgrade v8-debugsourceUpgrade libv8-3Upgrade libxml2-devel-64bitUpgrade chromiumUpgrade v8Upgrade libxml2-develUpgrade chromium-suid-helperUpgrade libxml2-debuginfoUpgrade libxml2-pythonUpgrade chromium-suid-helper-debuginfoUpgrade libxml2-debugsourceUpgrade chromium-desktop-gnomeUpgrade chromium-debuginfoUpgrade libxml2-x86Upgrade chromium-desktop-kdeUpgrade libxml2-64bitUpgrade libxml2-devel-32bitUpgrade libxml2Upgrade libxml2-32bitUpgrade libxml2-docUpgrade libv8-3-debuginfoUpgrade v8-develUpgrade libxml2-debuginfo-32bitUpgrade v8-private-headers-devel | Feb 17, 2015 | May 15, 2012 |
| Ubuntu | — | Upgrade libxml2 | Nov 8, 2024 | May 16, 2012 |
| Vmsa 2013 0001 | — | Upgrade VMware ESXi 4.1 to build number 988178Upgrade VMware ESX 4.1 to build number 988178 | Feb 4, 2013 | May 15, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub