6.8
CVSSv2

CVE-2012-2893

Published: 26/09/2012 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Double free vulnerability in libxslt, as used in Google Chrome prior to 22.0.1229.79, allows remote malicious users to cause a denial of service or possibly have unspecified other impact via vectors related to XSL transforms.

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome 22.0.1229.23

google chrome 22.0.1229.63

google chrome 22.0.1229.18

google chrome 22.0.1229.33

google chrome 22.0.1229.9

google chrome 22.0.1229.57

google chrome 22.0.1229.32

google chrome 22.0.1229.54

google chrome 22.0.1229.16

google chrome 22.0.1229.4

google chrome 22.0.1229.21

google chrome 22.0.1229.12

google chrome 22.0.1229.31

google chrome 22.0.1229.10

google chrome 22.0.1229.2

google chrome 22.0.1229.22

google chrome 22.0.1229.35

google chrome 22.0.1229.50

google chrome 22.0.1229.36

google chrome 22.0.1229.60

google chrome 22.0.1229.62

google chrome 22.0.1229.25

google chrome 22.0.1229.51

google chrome 22.0.1229.0

google chrome 22.0.1229.1

google chrome 22.0.1229.7

google chrome 22.0.1229.17

google chrome 22.0.1229.20

google chrome 22.0.1229.26

google chrome 22.0.1229.65

google chrome 22.0.1229.8

google chrome 22.0.1229.59

google chrome 22.0.1229.37

google chrome 22.0.1229.52

google chrome 22.0.1229.49

google chrome 22.0.1229.55

google chrome 22.0.1229.64

google chrome 22.0.1229.27

google chrome 22.0.1229.28

google chrome 22.0.1229.76

google chrome 22.0.1229.56

google chrome 22.0.1229.48

google chrome 22.0.1229.67

google chrome 22.0.1229.29

google chrome 22.0.1229.14

google chrome 22.0.1229.11

google chrome 22.0.1229.6

google chrome 22.0.1229.24

google chrome 22.0.1229.3

google chrome

google chrome 22.0.1229.58

google chrome 22.0.1229.39

google chrome 22.0.1229.53

Vendor Advisories

Synopsis Important: libxslt security update Type/Severity Security Advisory: Important Topic Updated libxslt packages that fix several security issues are now availablefor Red Hat Enterprise Linux 5 and 6The Red Hat Security Response Team has rated this update as havingimportant security impact Common Vul ...
Debian Bug report logs - #689422 libxslt: Three security issues Package: libxslt; Maintainer for libxslt is Debian XML/SGML Group <debian-xml-sgml-pkgs@listsaliothdebianorg>; Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Tue, 2 Oct 2012 12:54:04 UTC Severity: grave Tags: patch, security Fixed in version ...
Applications using libxslt could be made to crash or run programs as your login if they processed a specially crafted file ...
Nicholas Gregoire and Cris Neckar discovered several memory handling bugs in libxslt, which could lead to denial of service or the execution of arbitrary code if a malformed document is processed For the stable distribution (squeeze), these problems have been fixed in version 1126-6+squeeze2 For the unstable distribution (sid), these problems h ...