← All CVEs

CVE-2011-1944

high · 9.3

Integer overflow in xpath.c in libxml2 2.6.x through 2.6.32 and 2.7.x through 2.7.8, and libxml 1.8.16 and earlier, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted XML file that triggers a heap-based buffer overflow when adding a new namespace node, related to handling of XPath expressions.

9.3
CVSS
13.4%
EPSS (exploit prob.)
96th
EPSS percentile
2011-09-02
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-189

Affected products

VendorProductAffected versions
xmlsoftlibxml22.6.0
xmlsoftlibxml22.6.1
xmlsoftlibxml22.6.2
xmlsoftlibxml22.6.3
xmlsoftlibxml22.6.4
xmlsoftlibxml22.6.5
xmlsoftlibxml22.6.6
xmlsoftlibxml22.6.7
xmlsoftlibxml22.6.8
xmlsoftlibxml22.6.9
xmlsoftlibxml22.6.11
xmlsoftlibxml22.6.12
xmlsoftlibxml22.6.13
xmlsoftlibxml22.6.14
xmlsoftlibxml22.6.16
xmlsoftlibxml22.6.17
xmlsoftlibxml22.6.18
xmlsoftlibxml22.6.20
xmlsoftlibxml22.6.22
xmlsoftlibxml22.6.26
xmlsoftlibxml22.6.27
xmlsoftlibxml22.6.30
xmlsoftlibxml22.6.32
xmlsoftlibxml22.7.0
xmlsoftlibxml22.7.1
xmlsoftlibxml22.7.2
xmlsoftlibxml22.7.3
xmlsoftlibxml22.7.4
xmlsoftlibxml22.7.5
xmlsoftlibxml22.7.6
xmlsoftlibxml22.7.7
xmlsoftlibxml22.7.8
xmlsoftlibxml<= 1.8.16
xmlsoftlibxml1.5.0
xmlsoftlibxml1.6.0
xmlsoftlibxml1.6.1
xmlsoftlibxml1.6.2
xmlsoftlibxml1.7.0
xmlsoftlibxml1.7.1
xmlsoftlibxml1.7.2

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2011-1944