Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2011-1944

Integer overflow in xpath.c in libxml2 2.6.x through 2.6.32 and 2.7.x through 2.7.8, and libxml 1.8.16 and earlier, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted XML file that triggers a heap-based buffer overflow when adding a new namespace node, related to handling of XPath expressions.

  • Published: Sep 2, 2011
  • Updated: Apr 13, 2023
  • CVE: CVE-2011-1944
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 9.3
  • AV:N/AC:M/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
xmlsoft / libxml2 2.6.16 2.6.16.x
xmlsoft / libxml2 2.6.32 2.6.32.x
xmlsoft / libxml2 2.6.26 2.6.26.x
xmlsoft / libxml2 2.6.11 2.6.11.x
xmlsoft / libxml2 2.6.17 2.6.17.x
xmlsoft / libxml2 2.6.27 2.6.27.x
xmlsoft / libxml2 2.6.13 2.6.13.x
xmlsoft / libxml2 2.6.7 2.6.7.x
xmlsoft / libxml2 2.6.14 2.6.14.x
xmlsoft / libxml2 2.6.8 2.6.8.x
xmlsoft / libxml2 2.6.2 2.6.2.x
xmlsoft / libxml2 2.6.5 2.6.5.x
xmlsoft / libxml2 2.6.4 2.6.4.x
xmlsoft / libxml2 2.6.18 2.6.18.x
xmlsoft / libxml2 2.6.1 2.6.1.x
xmlsoft / libxml2 2.6.20 2.6.20.x
xmlsoft / libxml2 2.6.12 2.6.12.x
xmlsoft / libxml2 2.6.0 2.6.0.x
xmlsoft / libxml2 2.6.9 2.6.9.x
xmlsoft / libxml2 2.6.30 2.6.30.x
xmlsoft / libxml2 2.6.22 2.6.22.x
xmlsoft / libxml2 2.6.3 2.6.3.x
xmlsoft / libxml2 2.6.6 2.6.6.x
xmlsoft / libxml2 2.7.2 2.7.2.x
xmlsoft / libxml2 2.7.8 2.7.8.x
xmlsoft / libxml2 2.7.7 2.7.7.x
xmlsoft / libxml2 2.7.5 2.7.5.x
xmlsoft / libxml2 2.7.3 2.7.3.x
xmlsoft / libxml2 2.7.1 2.7.1.x
xmlsoft / libxml2 2.7.0 2.7.0.x
xmlsoft / libxml2 2.7.6 2.7.6.x
xmlsoft / libxml2 2.7.4 2.7.4.x
xmlsoft / libxml 1.8.9 1.8.9.x
xmlsoft / libxml 1.6.0 1.6.0.x
xmlsoft / libxml 1.7.2 1.7.2.x
xmlsoft / libxml 1.8.3 1.8.3.x
xmlsoft / libxml 1.8.0 1.8.0.x
xmlsoft / libxml 1.8.13 1.8.13.x
xmlsoft / libxml 1.8.10 1.8.10.x
xmlsoft / libxml 1.8.4 1.8.4.x
xmlsoft / libxml 1.8.6 1.8.6.x
xmlsoft / libxml 1.7.0 1.7.0.x
xmlsoft / libxml - 1.8.16.x
xmlsoft / libxml 1.8.14 1.8.14.x
xmlsoft / libxml 1.8.8 1.8.8.x
xmlsoft / libxml 1.7.4 1.7.4.x
xmlsoft / libxml 1.8.7 1.8.7.x
xmlsoft / libxml 1.7.3 1.7.3.x
xmlsoft / libxml 1.8.1 1.8.1.x
xmlsoft / libxml 1.8.11 1.8.11.x
xmlsoft / libxml 1.6.2 1.6.2.x
xmlsoft / libxml 1.5.0 1.5.0.x
xmlsoft / libxml 1.8.2 1.8.2.x
xmlsoft / libxml 1.8.12 1.8.12.x
xmlsoft / libxml 1.8.5 1.8.5.x
xmlsoft / libxml 1.6.1 1.6.1.x
xmlsoft / libxml 1.8.15 1.8.15.x
xmlsoft / libxml 1.7.1 1.7.1.x