imPC@ndo IT

Tracker / CVE-2010-4494

CVE-2010-4494

High 7.5

Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.

Affected products and versions

apache openoffice · 2.1.0 → 2.4.3
apache openoffice · 3.0.0 → 3.3.0
apple iphone_os · … → 4.3.0
apple itunes · … → 10.2
apple mac_os_x · … → 10.6.7
apple safari · … → 5.0.4
debian debian_linux
fedoraproject fedora
google chrome · … → 8.0.552.215
hp insight_control_server_deployment
hp rapid_deployment_pack
opensuse opensuse
redhat enterprise_linux_desktop
redhat enterprise_linux_eus
redhat enterprise_linux_server
redhat enterprise_linux_workstation
suse suse_linux_enterprise_server
xmlsoft libxml2 · … → 2.7.8

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References