Back

HIGH

chromium-browser: integer overflow in libxslt

Published Apr 24, 2017

Description

The xsltAddTextString function in transform.c in libxslt 1.1.29, as used in Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android, lacked a check for integer overflow during a size calculation, which allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (16)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Chrome
Published Apr 24, 2017
Updated Aug 5, 2024
Reserved Jan 2, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Mar 9, 2017
GHSA-PF6M-FXPQ-FG8V