FlawAtlas
Search the atlas
CVE-2012-5134 Not scored

CVE-2012-5134

Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91 and other products, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document.

Exploit probability 4.4%
Published November 28, 2012
Required by Not available
Last source change April 10, 2026

03 / CONNECTIONS

Connected vulnerabilities

related OPENSUSE-SU-2024:12948-1

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2012-5134

Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91 and other products, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document.

View original source

05 / REFERENCES

Further evidence