Off-by-one error in libxml2, as used in Google Chrome before 19.0.1084.46 and other products, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via unknown vectors.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Ios | — | Upgrade to the latest version of Apple iOS | Oct 8, 2014 | May 15, 2012 |
| Apple Itunes | — | Upgrade Apple iTunes to the latest version | Nov 6, 2023 | Nov 6, 2023 |
| Centos_linux | — | Upgrade libxml2Upgrade mingw32-libxml2Upgrade libxml2-pythonUpgrade libxml2-staticUpgrade mingw32-libxml2-staticUpgrade libxml2-devel | Dec 1, 2016 | May 15, 2012 |
| Debian | — | Upgrade libxml2 | Jul 30, 2024 | May 16, 2012 |
| Gentoo Linux | — | Upgrade dev-libs/libxml2. | Oct 30, 2017 | May 15, 2012 |
| Google Chrome | — | Upgrade to the latest version of Google Chrome | Jun 11, 2012 | May 15, 2012 |
| Oracle Solaris | — | Upgrade libxml2 to version 2.7.6-0.175.0.10.0.4.0 on Solaris 11.0 | May 29, 2017 | May 15, 2012 |
| Oracle_linux | — | Upgrade libxml2-pythonUpgrade mingw32-libxml2-staticUpgrade libxml2-staticUpgrade mingw32-libxml2Upgrade libxml2-develUpgrade libxml2 | Oct 16, 2024 | May 16, 2012 |
| Suse | — | Upgrade libxml2-docUpgrade libxml2-devel-32bitUpgrade libxml2Upgrade libxml2-32bitUpgrade libxml2-x86Upgrade libxml2-develUpgrade chromium | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade libxml2 | Nov 8, 2024 | May 16, 2012 |
| Vmsa 2013 0001 | — | Upgrade VMware ESX 4.1 to build number 988178Upgrade VMware ESXi 4.1 to build number 988178 | Feb 4, 2013 | May 15, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub