First published: Sat Sep 17 2011(Updated: )
Double free vulnerability in libxml2, as used in Google Chrome before 14.0.835.163, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.
Credit: cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <14.0.835.163 | |
iPhone OS | <6.0 | |
Apple iOS and macOS | <10.7.4 | |
Debian Linux | =5.0 | |
Debian Linux | =7.0 | |
Debian Linux | =6.0 | |
Red Hat Enterprise Linux Desktop | =6.0 | |
Red Hat Enterprise Linux Server | =6.0 | |
Red Hat Enterprise Linux Workstation | =6.0 | |
Red Hat Enterprise Linux Server | =6.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-2834 has a medium severity rating due to its potential to cause denial of service.
To fix CVE-2011-2834, update Google Chrome to version 14.0.835.163 or later.
CVE-2011-2834 affects multiple versions of Google Chrome, Apple iPhone OS, macOS Yosemite, and certain Debian and Red Hat Linux distributions.
Yes, CVE-2011-2834 can be exploited remotely through vulnerabilities in XPath handling.
CVE-2011-2834 is classified as a double free vulnerability.