cbcvebase.
CVE-2017-5029
published 2017-04-24

CVE-2017-5029: The xsltAddTextString function in transform.c in libxslt 1.1.29, as used in Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and…

high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
The xsltAddTextString function in transform.c in libxslt 1.1.29, as used in Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android, lacked a check for integer overflow during a size calculation, which allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.

Affected

22 ranges
VendorProductVersion rangeFixed in
appleicloud_for_windows
appleios
appleitunes_12.6_for_windows
applemacos_sierra_10.12.4_security_update_2017-001_el_capitan_and_security_update_201
appletvos
applewatchos
debiandebian_linux
debiandebian_linux
debianlibxslt< libxslt 1.1.29-2.1 (bookworm)libxslt 1.1.29-2.1 (bookworm)
googlechrome<= 57.0.2987.75
googlechrome<= 57.0.2987.100
nokogirinokogiri>= 0 < 1.7.21.7.2
redhatenterprise_linux_desktop
redhatenterprise_linux_server
redhatenterprise_linux_workstation
xmlsoftlibxslt
xmlsoftlibxslt>= 0 < 1.1.29-2.11.1.29-2.1
xmlsoftlibxslt>= 0 < 1.1.29-2.11.1.29-2.1
xmlsoftlibxslt>= 0 < 1.1.29-2.11.1.29-2.1
xmlsoftlibxslt>= 0 < 1.1.29-2.11.1.29-2.1
xmlsoftlibxslt>= 0 < 1.1.28-2ubuntu0.11.1.28-2ubuntu0.1
xmlsoftlibxslt>= 0 < 1.1.28-2.1ubuntu0.11.1.28-2.1ubuntu0.1

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH