Lucene search

K
cve[email protected]CVE-2011-2834
HistorySep 19, 2011 - 12:02 p.m.

CVE-2011-2834

2011-09-1912:02:55
CWE-415
web.nvd.nist.gov
52
cve-2011-2834
libxml2
google chrome
vulnerability
denial of service
remote attackers
xpath handling
nvd

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

8.2 High

AI Score

Confidence

High

0.04 Low

EPSS

Percentile

92.1%

Double free vulnerability in libxml2, as used in Google Chrome before 14.0.835.163, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.

Affected configurations

NVD
Node
googlechromeRange<14.0.835.163
Node
appleiphone_osRange<6.0
OR
applemac_os_xRange<10.7.4
Node
debiandebian_linuxMatch5.0
OR
debiandebian_linuxMatch6.0
OR
debiandebian_linuxMatch7.0
Node
redhatenterprise_linux_desktopMatch6.0
OR
redhatenterprise_linux_serverMatch6.0
OR
redhatenterprise_linux_server_eusMatch6.3
OR
redhatenterprise_linux_workstationMatch6.0

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

8.2 High

AI Score

Confidence

High

0.04 Low

EPSS

Percentile

92.1%