Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
[oCERT-2008-009] libxslt heap overflow Jul 31 2008 03:08PM
Andrea Barisani (lcars ocert org)

2008/07/31 #2008-009 libxslt heap overflow

Description:

The libexslt library bundled with libxslt is affected by a heap-based buffer
overflow which can lead to arbitrary code execution.

The vulnerability is present in the rc4 encryption/decryption functions. An
arbitrary length string, passed as...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus