CVE-2021-30560
03.08.2021, 19:15
Use after free in Blink XSLT in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.Enginsight
| Vendor | Product | Version |
|---|---|---|
| chrome | 𝑥 < 91.0.4472.164 | |
| xmlsoft | libxslt | 𝑥 < 1.1.35 |
| debian | debian_linux | 10.0 |
| debian | debian_linux | 11.0 |
| splunk | universal_forwarder | 8.2.0 ≤ 𝑥 < 8.2.12 |
| splunk | universal_forwarder | 9.0.0 ≤ 𝑥 < 9.0.6 |
| splunk | universal_forwarder | 9.1.0 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| chromium |
| ||||||||||||
| libxslt |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| chromium-browser |
| ||||||||||||||||||
| libxslt |
|
Common Weakness Enumeration
References