← Back

CVE-2010-4008

nvd nist
Published: Nov 17, 2010Modified: Apr 29, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:N/A:P
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which allows context-dependent attackers to cause a denial of service (application crash) via a crafted XML document.

Affected (25)

Products: Google: Chrome · Apple: Iphone Os, Itunes, Mac Os X, Safari · Xmlsoft: Libxml2 · +6 more
Show all products
1 product
Chrome
4 products
Iphone Os
Itunes
Mac Os X
Safari
1 product
Libxml2
1 product
Debian Linux
1 product
Ubuntu Linux
4 products
Enterprise Linux Desktop
Enterprise Linux Server
Enterprise Linux Server Eus
Enterprise Linux Workstation
1 product
Opensuse
1 product
Suse Linux Enterprise Server
1 product
Openoffice
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 7.0.517.44
Configuration B
4 vulnerable
Vulnerable SoftwareAffected Versions
Before 4.2
Before 10.2
Before 10.6.7
Before 5.0.4
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 2.7.8
Configuration D
2 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 5.0
Version 6.0
Configuration E
5 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 10.04
Version 10.10
Version 6.06
Version 8.04
Version 9.10
Configuration F
4 vulnerable
Configuration G
6 vulnerable
Vulnerable SoftwareAffected Versions
Opensuse
Version 11.1
Version 11.2
Version 11.3
Suse
Version 10 sp3
Version 11
Version 11 sp1
Configuration H
2 vulnerable
Vulnerable SoftwareAffected Versions
Apache
From 2.0.0 to 2.4.3
From 3.0.0 to 3.3.0

References (64)

Source: product-security@apple.com
ExploitIssue TrackingPatchVendor Advisory
Source: product-security@apple.com
Mailing ListThird Party Advisory
Source: product-security@apple.com
Mailing ListThird Party Advisory
Source: product-security@apple.com
Mailing ListThird Party Advisory
Source: product-security@apple.com
Mailing ListThird Party Advisory
Source: product-security@apple.com
Mailing ListThird Party Advisory
Source: product-security@apple.com
Mailing ListRelease NotesVendor Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party AdvisoryVendor Advisory
Source: product-security@apple.com
Third Party AdvisoryVendor Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Third Party AdvisoryVDB Entry
Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Permissions Required
Source: product-security@apple.com
Permissions Required
Source: product-security@apple.com
Permissions Required
Source: product-security@apple.com
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitIssue TrackingPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListRelease NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.