First published: Tue May 12 2020(Updated: )
Last updated 13 August 2024
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Gnome Libcroco | <=0.6.13 | |
IBM Security Guardium | <=10.5 | |
IBM Security Guardium | <=10.6 | |
IBM Security Guardium | <=11.0 | |
IBM Security Guardium | <=11.1 | |
IBM Security Guardium | <=11.2 | |
IBM Security Guardium | <=11.3 | |
debian/libcroco |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-12825 is a vulnerability in Libcroco that could cause a denial of service due to excessive recursion in cr_parser_parse_any_core in cr-parser.c.
This vulnerability can be exploited by convincing a victim to open a specially-crafted CSS file.
IBM Security Guardium versions 10.5 to 11.3 are affected by this vulnerability.
The severity of CVE-2020-12825 is classified as high with a CVSS score of 7.1.
To mitigate CVE-2020-12825, users should update Libcroco to a version that includes the fix for the vulnerability.