CVE-2011-3919

Heap-based buffer overflow in libxml2, as used in Google Chrome before 16.0.912.75, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
ChromeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 84%
VendorProductVersion
googlechrome
𝑥
< 16.0.912.75
appleiphone_os
𝑥
< 6.0
applemac_os_x
𝑥
< 10.7.4
redhatenterprise_linux_desktop
6.0
redhatenterprise_linux_server
6.0
redhatenterprise_linux_server_eus
6.3
redhatenterprise_linux_workstation
6.0
debiandebian_linux
5.0
debiandebian_linux
6.0
debiandebian_linux
7.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
libxml2
bullseye
2.9.10+dfsg-6.7+deb11u4
fixed
bullseye (security)
2.9.10+dfsg-6.7+deb11u5
fixed
bookworm
2.9.14+dfsg-1.3~deb12u1
fixed
sid
2.12.7+dfsg+really2.9.14-0.1
fixed
trixie
2.12.7+dfsg+really2.9.14-0.1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
chromium-browser
oneiric
Fixed 17.0.963.56~r121963-0ubuntu0.11.10.1
released
natty
Fixed 17.0.963.56~r121963-0ubuntu0.11.04.1
released
maverick
Fixed 17.0.963.56~r121963-0ubuntu0.10.10.1
released
lucid
Fixed 17.0.963.56~r121963-0ubuntu0.10.04.1
released
hardy
dne
libxml2
oneiric
Fixed 2.7.8.dfsg-4ubuntu0.1
released
natty
Fixed 2.7.8.dfsg-2ubuntu0.2
released
maverick
Fixed 2.7.7.dfsg-4ubuntu0.3
released
lucid
Fixed 2.7.6.dfsg-1ubuntu1.3
released
hardy
Fixed 2.6.31.dfsg-2ubuntu1.7
released
References