Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1202

Опубликовано: 11 мар. 2011
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3

Описание

The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

5.0~b2+build1+nobinonly-0ubuntu2
hardy

ignored

end of life
lucid

released

3.6.17+build3+nobinonly-0ubuntu0.10.04.1
maverick

released

3.6.17+build3+nobinonly-0ubuntu0.10.10.1
natty

released

4.0.1+build1+nobinonly-0ubuntu0.11.04.1
oneiric

not-affected

5.0~b2+build1+nobinonly-0ubuntu2
precise

not-affected

5.0~b2+build1+nobinonly-0ubuntu2
upstream

released

3.6.17

Показывать по

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

1.1.26-13
hardy

released

1.1.22-1ubuntu1.3
karmic

ignored

end of life
lucid

released

1.1.26-1ubuntu1.1
maverick

ignored

end of life
natty

released

1.1.26-6ubuntu0.1
oneiric

not-affected

1.1.26-7
precise

not-affected

1.1.26-8ubuntu1.1
upstream

released

1.1.26-7

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

hardy

ignored

end of life
lucid

released

3.1.10+build1+nobinonly-0ubuntu0.10.04.1
maverick

released

3.1.10+build1+nobinonly-0ubuntu0.10.10.1
natty

released

3.1.10+build1+nobinonly-0ubuntu0.11.04.1
oneiric

not-affected

precise

not-affected

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

released

1.9.2.17+build3+nobinonly-0ubuntu0.8.04.1
karmic

released

1.9.2.17+build3+nobinonly-0ubuntu0.9.10.1
lucid

released

1.9.2.17+build3+nobinonly-0ubuntu0.10.04.1
maverick

released

1.9.2.17+build3+nobinonly-0ubuntu0.10.10.1
natty

released

1.9.2.17+build3+nobinonly-0ubuntu1
oneiric

DNE

precise

DNE

upstream

released

1.9.2.17

Показывать по

EPSS

Процентиль: 76%
0.0102
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 14 лет назад

The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.

nvd
больше 14 лет назад

The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.

debian
больше 14 лет назад

The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 a ...

github
около 3 лет назад

The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.

oracle-oval
почти 13 лет назад

ELSA-2012-1265: libxslt security update (IMPORTANT)

EPSS

Процентиль: 76%
0.0102
Низкий

4.3 Medium

CVSS2