CVE-2011-3905

medium
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

libxml2, as used in Google Chrome before 16.0.912.63, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

References

http://code.google.com/p/chromium/issues/detail?id=95465

http://googlechromereleases.blogspot.com/2011/12/stable-channel-update.html

http://rhn.redhat.com/errata/RHSA-2013-0217.html

http://www.debian.org/security/2012/dsa-2394

http://www.mandriva.com/security/advisories?name=MDVSA-2011:188

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14761

Details

Source: MITRE

Published: 2011-12-13

Updated: 2020-05-07

Type: CWE-125

Risk Information

CVSS v2

Base Score: 5

Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Impact Score: 2.9

Exploitability Score: 10

Severity: MEDIUM

Tenable Plugins

View all (34 total)

IDNameProductFamilySeverity
89109VMware ESX Service Console Multiple Vulnerabilities (VMSA-2012-0008) (remote check)NessusMisc.
critical
89037VMware ESX / ESXi libxml2 Multiple Vulnerabilities (VMSA-2012-0012) (remote check)NessusMisc.
high
80688Oracle Solaris Third-Party Patch Update : libxml2 (cve_2011_0216_denial_of)NessusSolaris Local Security Checks
high
79283RHEL 5 : rhev-hypervisor5 (RHSA-2012:0168)NessusRed Hat Local Security Checks
high
74538openSUSE Security Update : v8 / chromium (openSUSE-2011-93)NessusSuSE Local Security Checks
high
70884ESXi 5.0 < Build 764879 Multiple Vulnerabilities (remote check)NessusMisc.
high
69643Amazon Linux AMI : libxml2 (ALAS-2012-36)NessusAmazon Linux Local Security Checks
high
68721Oracle Linux 6 : mingw32-libxml2 (ELSA-2013-0217)NessusOracle Linux Local Security Checks
high
68430Oracle Linux 6 : libxml2 (ELSA-2012-0018)NessusOracle Linux Local Security Checks
high
68429Oracle Linux 5 : libxml2 (ELSA-2012-0017)NessusOracle Linux Local Security Checks
high
68428Oracle Linux 4 : libxml2 (ELSA-2012-0016)NessusOracle Linux Local Security Checks
high
64425Scientific Linux Security Update : mingw32-libxml2 on SL6.x (x86_64) (20130131)NessusScientific Linux Local Security Checks
high
64391RHEL 6 : mingw32-libxml2 (RHSA-2013:0217)NessusRed Hat Local Security Checks
high
64384CentOS 6 : mingw32-libxml2 (CESA-2013:0217)NessusCentOS Local Security Checks
high
62324Fedora 16 : libxml2-2.7.8-8.fc16 (2012-13824)NessusFedora Local Security Checks
high
62323Fedora 17 : libxml2-2.7.8-9.fc17 (2012-13820)NessusFedora Local Security Checks
high
61218Scientific Linux Security Update : libxml2 on SL6.x i386/x86_64 (20120111)NessusScientific Linux Local Security Checks
high
61217Scientific Linux Security Update : libxml2 on SL5.x i386/x86_64 (20120111)NessusScientific Linux Local Security Checks
high
61216Scientific Linux Security Update : libxml2 on SL4.x i386/x86_64 (20120111)NessusScientific Linux Local Security Checks
high
59966VMSA-2012-0012 : VMware ESXi update to third-party libraryNessusVMware ESX Local Security Checks
high
58903VMSA-2012-0008 : VMware ESX updates to ESX Service ConsoleNessusVMware ESX Local Security Checks
high
57702Debian DSA-2394-1 : libxml2 - several vulnerabilitiesNessusDebian Local Security Checks
high
57615Ubuntu 8.04 LTS / 10.04 LTS / 10.10 / 11.04 / 11.10 : libxml2 vulnerabilities (USN-1334-1)NessusUbuntu Local Security Checks
high
57562CentOS 6 : libxml2 (CESA-2012:0018)NessusCentOS Local Security Checks
high
57493RHEL 6 : libxml2 (RHSA-2012:0018)NessusRed Hat Local Security Checks
high
57492RHEL 5 : libxml2 (RHSA-2012:0017)NessusRed Hat Local Security Checks
high
57491RHEL 4 : libxml2 (RHSA-2012:0016)NessusRed Hat Local Security Checks
high
57487CentOS 5 : libxml2 (CESA-2012:0017)NessusCentOS Local Security Checks
high
57486CentOS 4 : libxml2 (CESA-2012:0016)NessusCentOS Local Security Checks
high
57320Mandriva Linux Security Advisory : libxml2 (MDVSA-2011:188)NessusMandriva Local Security Checks
high
800943Google Chrome < 16.0.912.63 Multiple VulnerabilitiesLog Correlation EngineWeb Clients
high
6108Google Chrome < 16.0.912.63 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
high
57292FreeBSD : chromium -- multiple vulnerabilities (68ac6266-25c3-11e1-b63a-00262d5ed8ee)NessusFreeBSD Local Security Checks
high
57288Google Chrome < 16.0.912.63 Multiple VulnerabilitiesNessusWindows
high