[Debian] CVE: CVE-2021-30560: libxslt: use-after-free in xsltApplyTemplates
Bug #2020639 reported by
Yue Tao
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
StarlingX |
Fix Released
|
High
|
Unassigned |
Bug Description
CVE-2021-30560: https:/
Base Score: 8.8 HIGH Vector: CVSS:3.
Use after free in Blink XSLT in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
References:
['libxslt1.
CVE References
Changed in starlingx: | |
status: | New → Triaged |
importance: | Undecided → High |
tags: | added: stx.9.0 stx.security |
To post a comment you must log in.
Fix proposed to branch: master /review. opendev. org/c/starlingx /tools/ +/884669
Review: https:/