Oval Definition:oval:org.opensuse.security:def:20122870
Revision Date:2022-06-30Version:1
Title:CVE-2012-2870
Description:

libxslt 1.1.26 and earlier, as used in Google Chrome before 21.0.1180.89, does not properly manage memory, which might allow remote attackers to cause a denial of service (application crash) via a crafted XSLT expression that is not properly identified during XPath navigation, related to (1) the xsltCompileLocationPathPattern function in libxslt/pattern.c and (2) the xsltGenerateIdFunction function in libxslt/functions.c.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-2870
Mitre CVE-2012-2870
SUSE CVE-2012-2870
openSUSE-SU-2012:1215-1
Platform(s):openSUSE 12.1
openSUSE 12.1 Update
openSUSE 12.2 Update
openSUSE Leap 15.0
openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • chromedriver-23.0.1255.0-1.14.1 is installed
  • OR chromium-23.0.1255.0-1.14.1 is installed
  • OR chromium-desktop-gnome-23.0.1255.0-1.14.1 is installed
  • OR chromium-desktop-kde-23.0.1255.0-1.14.1 is installed
  • OR chromium-suid-helper-23.0.1255.0-1.14.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • chromium-66.0.3359.170-lp150.1 is installed
  • AND chromium is signed with openSUSE key
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • chromedriver-55.0.2883.75-3.1 is installed
  • OR chromium-55.0.2883.75-3.1 is installed
  • BACK