CVE-2012-5134

EPSS 2.1%

libxml2 - buffer overflow

發布日:2012/11/28修改日:2026/4/28

描述

Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91 and other products, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document.

受影響套件(2)

參考連結(1)