CVE-2011-3970
published 2012-02-09CVE-2011-3970: libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
PriorityP416medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
1.82%
76.4th percentile
libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libxslt | < libxslt 1.1.26-11 (bookworm) | libxslt 1.1.26-11 (bookworm) |
| chrome | < 17.0.963.46 | 17.0.963.46 | |
| suse | linux_enterprise_desktop | — | — |
| suse | linux_enterprise_server | — | — |
| suse | linux_enterprise_server | — | — |
| suse | linux_enterprise_software_development_kit | — | — |
| vmware | esxi | — | — |
| vmware | vcenter_server | — | — |
| vmware | vmware_esxi | — | — |
| vmware | vmware_vcenter_server | — | — |
| vmware | vmware_vsphere | — | — |
| vmware | vmware_workstation | — | — |
| vmware | vsphere | — | — |
| xmlsoft | libxslt | <= 1.1.26 | — |
| xmlsoft | libxslt | >= 0 < 1.1.26-11 | 1.1.26-11 |
| xmlsoft | libxslt | >= 0 < 1.1.26-11 | 1.1.26-11 |
| xmlsoft | libxslt | >= 0 < 1.1.26-11 | 1.1.26-11 |
| xmlsoft | libxslt | >= 0 < 1.1.26-11 | 1.1.26-11 |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3LOW
vendor_redhat4.3MEDIUM
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VMware
VMware vSphere security updates for the authentication service and third party libraries
vendor_vmware·2013-01-31·CVSS 10.0
CVE-2011-1202 [CRITICAL] VMware vSphere security updates for the authentication service and third party libraries
VMSA-2013-0001: VMware vSphere security updates for the authentication service and third party libraries
a. VMware vSphere client-side authentication memory corruption vulnerability VMware vCenter Server, vSphere Client, and ESX contain a vulnerability in the handling of the management authentication protocol. To exploit this vulnerability, an attacker must convince either vCenter Server, vSphere Client or ESX to interact with a malicious server as a client. Exploitation of the issue may lead to code execution on the client system. To reduce the likelihood of exploitation, vSphere components should be deployed on an isolated management network. The Common Vulnerabilities and Exposures Project (cve.mitre.org) has assigned the name CVE-2013-1405 to this issue. Column 4 of the following tabl
VMware
VMware security updates for vCSA, vCenter Server, and ESXi
vendor_vmware·2012-12-20·CVSS 4.0
CVE-2009-5029 [MEDIUM] VMware security updates for vCSA, vCenter Server, and ESXi
VMSA-2012-0018: VMware security updates for vCSA, vCenter Server, and ESXi
a. vCenter Server Appliance directory traversal The vCenter Server Appliance (vCSA) contains a directory traversal vulnerability that allows an authenticated remote user to retrieve arbitrary files. Exploitation of this issue may expose sensitive information stored on the server. VMware would like to thank Alexander Minozhenko from ERPScan for reporting this issue to us. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2012-6324 to this issue. Column 4 of the following table lists the action required to remediate the vulnerability in each release, if a solution is available. VMware Product Product Version Running on Replace with/ Apply Patch VMware Product vCSA Product Vers
Ubuntu
libxslt vulnerabilities
vendor_ubuntu·2012-10-04·CVSS 4.3
CVE-2011-1202 [MEDIUM] libxslt vulnerabilities
Title: libxslt vulnerabilities
Summary: Applications using libxslt could be made to crash or run programs as your
login if they processed a specially crafted file.
Chris Evans discovered that libxslt incorrectly handled generate-id XPath
functions. If a user or automated system were tricked into processing a
specially crafted XSLT document, a remote attacker could obtain potentially
sensitive information. This issue only affected Ubuntu 8.04 LTS, Ubuntu
10.04 LTS and Ubuntu 11.04. (CVE-2011-1202)
It was discovered that libxslt incorrectly parsed certain patterns. If a
user or automated system were tricked into processing a specially crafted
XSLT document, a remote attacker could cause libxslt to crash, causing a
denial of service. (CVE-2011-3970)
Nicholas Gregoire discovered that libxs
Red Hat
libxslt: Out-of-bounds read when parsing certain patterns
vendor_redhat·2012-02-09·CVSS 4.3
CVE-2011-3970 [MEDIUM] CWE-125 libxslt: Out-of-bounds read when parsing certain patterns
libxslt: Out-of-bounds read when parsing certain patterns
libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
Statement: The Red Hat Security Response Team has rated this issue as having low security impact, a future update may address this flaw in libxslt.
Package: libxslt (Red Hat Enterprise Linux 4) - Will not fix
Package: mingw32-libxslt (Red Hat Enterprise Linux 6) - Will not fix
Debian
CVE-2011-3970: libxslt - libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to...
vendor_debian·2011·CVSS 4.3
CVE-2011-3970 [MEDIUM] CVE-2011-3970: libxslt - libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to...
libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
Scope: local
bookworm: resolved (fixed in 1.1.26-11)
bullseye: resolved (fixed in 1.1.26-11)
forky: resolved (fixed in 1.1.26-11)
sid: resolved (fixed in 1.1.26-11)
trixie: resolved (fixed in 1.1.26-11)
GHSA
GHSA-pmqr-v7cp-5xfx: libxslt, as used in Google Chrome before 17
ghsa_unreviewed·2022-05-13
CVE-2011-3970 [MEDIUM] CWE-125 GHSA-pmqr-v7cp-5xfx: libxslt, as used in Google Chrome before 17
libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
OSV
CVE-2011-3970: libxslt, as used in Google Chrome before 17
osv·2012-02-09·CVSS 4.3
CVE-2011-3970 [MEDIUM] CVE-2011-3970: libxslt, as used in Google Chrome before 17
libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
No detection rules found.
Bugzilla
CVE-2011-3970 libxslt: Out-of-bounds read when parsing certain patterns [fedora-all]
bugzilla·2012-02-09·CVSS 4.3
CVE-2011-3970 [MEDIUM] CVE-2011-3970 libxslt: Out-of-bounds read when parsing certain patterns [fedora-all]
CVE-2011-3970 libxslt: Out-of-bounds read when parsing certain patterns [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_
Bugzilla
CVE-2011-3970 libxslt: Out-of-bounds read when parsing certain patterns
bugzilla·2012-02-09·CVSS 4.3
CVE-2011-3970 [MEDIUM] CVE-2011-3970 libxslt: Out-of-bounds read when parsing certain patterns
CVE-2011-3970 libxslt: Out-of-bounds read when parsing certain patterns
Common Vulnerabilities and Exposures assigned an identifier CVE-2011-3970 to
the following vulnerability:
Name: CVE-2011-3970
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3970
Assigned: 20111001
Reference: CONFIRM:http://code.google.com/p/chromium/issues/detail?id=110277
Reference: CONFIRM:http://googlechromereleases.blogspot.com/2012/02/stable-channel-update.html
libxslt, as used in Google Chrome before 17.0.963.46, allows remote
attackers to cause a denial of service (out-of-bounds read) via
unspecified vectors.
Upstream patch:
http://git.gnome.org/browse/libxslt/commit/?id=fe5a4fa33eb85bce3253ed3742b1ea6c4b59b41b
Discussion:
Created libxslt tracking bugs for this issue
Affects: fedora-all [bug
http://code.google.com/p/chromium/issues/detail?id=110277http://googlechromereleases.blogspot.com/2012/02/stable-channel-update.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14818https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.htmlhttps://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.htmlhttp://code.google.com/p/chromium/issues/detail?id=110277http://googlechromereleases.blogspot.com/2012/02/stable-channel-update.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14818https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.htmlhttps://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html
2012-02-09
Published