Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Google Chrome libxslt堆内存地址敏感信息泄露漏洞
Vulnerability Description
Google Chrome是美国谷歌(Google)公司开发的一款Web浏览器。 Google Chrome 10.0.648.127之前版本的libxslt 1.1.26及之前版本的functions.c中的xsltGenerateIdFunction函数中存在漏洞。远程攻击者可借助XML文档获取关于堆内存地址的潜在敏感信息,该文档包含对XSLT generate-id Xpath函数的调用。
CVSS Information
N/A
Vulnerability Type
N/A