Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2011-1712
Description:The txXPathNodeUtils::getXSLTId function in txMozillaXPathTreeWalker.cpp and txStandaloneXPathTreeWalker.cpp in Mozilla Firefox before 3.5.19, 3.6.x before 3.6.17, and 4.x before 4.0.1, and SeaMonkey before 2.0.14, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.
Test IDs: 1.3.6.1.4.1.25623.1.0.801875  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2011-1712
http://scarybeastsecurity.blogspot.com/2011/03/multi-browser-heap-address-leak-in-xslt.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14467
XForce ISS Database: firefox-txxpathnodeutils-info-disclosure(66836)
https://exchange.xforce.ibmcloud.com/vulnerabilities/66836




© 1998-2025 E-Soft Inc. All rights reserved.