Search CVE reports


Toggle filters

111 – 120 of 126 results


CVE-2011-2834

Low priority
Fixed

Double free vulnerability in libxml2, as used in Google Chrome before 14.0.835.163, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.

2 affected packages

chromium-browser, libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser
libxml2
Show less packages

CVE-2011-2821

Low priority

Some fixes available 7 of 8

Double free vulnerability in libxml2, as used in Google Chrome before 13.0.782.215, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted XPath expression.

2 affected packages

libxml2, chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
chromium-browser
Show less packages

CVE-2011-1944

Medium priority
Fixed

Integer overflow in xpath.c in libxml2 2.6.x through 2.6.32 and 2.7.x through 2.7.8, and libxml 1.8.16 and earlier, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a...

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages

CVE-2011-0216

Low priority
Fixed

Off-by-one error in libxml in Apple Safari before 5.0.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and application crash) via a crafted web site.

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages

CVE-2010-4008

Medium priority
Fixed

libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which...

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages

CVE-2009-2416

Medium priority

Some fixes available 5 of 6

Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow context-dependent attackers to cause a denial of service (application crash) via crafted (1) Notation or (2)...

2 affected packages

libxml, libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml
libxml2
Show less packages

CVE-2009-2414

Medium priority

Some fixes available 5 of 6

Stack consumption vulnerability in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allows context-dependent attackers to cause a denial of service (application crash) via a large depth of...

2 affected packages

libxml, libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml
libxml2
Show less packages

CVE-2008-4409

Low priority
Not affected

libxml2 2.7.0 and 2.7.1 does not properly handle "predefined entities definitions" in entities, which allows context-dependent attackers to cause a denial of service (memory consumption and application crash), as demonstrated by...

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages

CVE-2008-4226

Medium priority
Fixed

Integer overflow in the xmlSAX2Characters function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a large XML document.

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages

CVE-2008-4225

Medium priority
Fixed

Integer overflow in the xmlBufferResize function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (infinite loop) via a large XML document.

1 affected package

libxml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxml2
Show less packages