CVE Vulnerabilities

CVE-2012-2870

Published: Aug 31, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 LOW
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

libxslt 1.1.26 and earlier, as used in Google Chrome before 21.0.1180.89, does not properly manage memory, which might allow remote attackers to cause a denial of service (application crash) via a crafted XSLT expression that is not properly identified during XPath navigation, related to (1) the xsltCompileLocationPathPattern function in libxslt/pattern.c and (2) the xsltGenerateIdFunction function in libxslt/functions.c.

Affected Software

NameVendorStart VersionEnd Version
Iphone_osApple*6.1.4 (including)
Iphone_osApple1.0.0 (including)1.0.0 (including)
Iphone_osApple1.0.1 (including)1.0.1 (including)
Iphone_osApple1.0.2 (including)1.0.2 (including)
Iphone_osApple1.1.0 (including)1.1.0 (including)
Iphone_osApple1.1.1 (including)1.1.1 (including)
Iphone_osApple1.1.2 (including)1.1.2 (including)
Iphone_osApple1.1.3 (including)1.1.3 (including)
Iphone_osApple1.1.4 (including)1.1.4 (including)
Iphone_osApple1.1.5 (including)1.1.5 (including)
Iphone_osApple2.0 (including)2.0 (including)
Iphone_osApple2.0.0 (including)2.0.0 (including)
Iphone_osApple2.0.1 (including)2.0.1 (including)
Iphone_osApple2.0.2 (including)2.0.2 (including)
Iphone_osApple2.1 (including)2.1 (including)
Iphone_osApple2.1.1 (including)2.1.1 (including)
Iphone_osApple2.2 (including)2.2 (including)
Iphone_osApple2.2.1 (including)2.2.1 (including)
Iphone_osApple3.0 (including)3.0 (including)
Iphone_osApple3.0.1 (including)3.0.1 (including)
Iphone_osApple3.1 (including)3.1 (including)
Iphone_osApple3.1.2 (including)3.1.2 (including)
Iphone_osApple3.1.3 (including)3.1.3 (including)
Iphone_osApple3.2 (including)3.2 (including)
Iphone_osApple3.2.1 (including)3.2.1 (including)
Iphone_osApple3.2.2 (including)3.2.2 (including)
Iphone_osApple4.0 (including)4.0 (including)
Iphone_osApple4.0.1 (including)4.0.1 (including)
Iphone_osApple4.0.2 (including)4.0.2 (including)
Iphone_osApple4.1 (including)4.1 (including)
Iphone_osApple4.2.1 (including)4.2.1 (including)
Iphone_osApple4.2.5 (including)4.2.5 (including)
Iphone_osApple4.2.8 (including)4.2.8 (including)
Iphone_osApple4.3.0 (including)4.3.0 (including)
Iphone_osApple4.3.1 (including)4.3.1 (including)
Iphone_osApple4.3.2 (including)4.3.2 (including)
Iphone_osApple4.3.3 (including)4.3.3 (including)
Iphone_osApple4.3.5 (including)4.3.5 (including)
Iphone_osApple5.0 (including)5.0 (including)
Iphone_osApple5.0.1 (including)5.0.1 (including)
Iphone_osApple5.1 (including)5.1 (including)
Iphone_osApple5.1.1 (including)5.1.1 (including)
Iphone_osApple6.0 (including)6.0 (including)
Iphone_osApple6.0.1 (including)6.0.1 (including)
Iphone_osApple6.0.2 (including)6.0.2 (including)
Iphone_osApple6.1 (including)6.1 (including)
Iphone_osApple6.1.2 (including)6.1.2 (including)
Iphone_osApple6.1.3 (including)6.1.3 (including)
Red Hat Enterprise Linux 5RedHatlibxslt-0:1.1.17-4.el5_8.3*
Red Hat Enterprise Linux 6RedHatlibxslt-0:1.1.26-2.el6_3.1*
Chromium-browserUbuntulucid*
Chromium-browserUbuntunatty*
Chromium-browserUbuntuoneiric*
Chromium-browserUbuntuprecise*
Chromium-browserUbuntuquantal*
Chromium-browserUbuntuupstream*
LibxsltUbuntuhardy*
LibxsltUbuntulucid*
LibxsltUbuntunatty*
LibxsltUbuntuoneiric*
LibxsltUbuntuprecise*

References