Search CVE reports


Toggle filters

111 – 120 of 129 results


CVE-2012-0841

Medium priority
Fixed

libxml2 before 2.8.0 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted XML data.

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages

CVE-2011-3919

Medium priority
Fixed

Heap-based buffer overflow in libxml2, as used in Google Chrome before 16.0.912.75, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

2 affected packages

chromium-browser, libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser
libxml2
Show less packages

CVE-2011-3905

Low priority
Fixed

libxml2, as used in Google Chrome before 16.0.912.63, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

2 affected packages

chromium-browser, libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser
libxml2
Show less packages

CVE-2011-2834

Low priority
Fixed

Double free vulnerability in libxml2, as used in Google Chrome before 14.0.835.163, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.

2 affected packages

chromium-browser, libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser
libxml2
Show less packages

CVE-2011-2821

Low priority

Some fixes available 7 of 8

Double free vulnerability in libxml2, as used in Google Chrome before 13.0.782.215, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted XPath expression.

2 affected packages

libxml2, chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
chromium-browser
Show less packages

CVE-2011-0216

Low priority
Fixed

Off-by-one error in libxml in Apple Safari before 5.0.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and application crash) via a crafted web site.

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages

CVE-2011-1944

Medium priority
Fixed

Integer overflow in xpath.c in libxml2 2.6.x through 2.6.32 and 2.7.x through 2.7.8, and libxml 1.8.16 and earlier, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a...

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages

CVE-2010-4008

Medium priority
Fixed

libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which...

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages

CVE-2009-2416

Medium priority

Some fixes available 5 of 6

Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow context-dependent attackers to cause a denial of service (application crash) via crafted (1) Notation or (2)...

2 affected packages

libxml, libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml
libxml2
Show less packages

CVE-2009-2414

Medium priority

Some fixes available 5 of 6

Stack consumption vulnerability in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allows context-dependent attackers to cause a denial of service (application crash) via a large depth of...

2 affected packages

libxml, libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml
libxml2
Show less packages