vendor:
libcroco
by:
qflb.wu
9,8
CVSS
CRITICAL
Denial of Service (memory allocation error) and Denial of Service (infinite loop)
400, 843
CWE
Product Name: libcroco
Affected Version From: 0.6.12
Affected Version To: 0.6.12
Patch Exists: YES
Related CWE: CVE-2017-8834, CVE-2017-8835
CPE: a:gnome:libcroco:0.6.12
Metasploit:
https://www.rapid7.com/db/vulnerabilities/alpine-linux-cve-2017-8834/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp2-cve-2017-8834/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp5-cve-2017-8834/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp8-cve-2017-8834/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp3-cve-2017-8834/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2017-8834/, https://www.rapid7.com/db/vulnerabilities/ubuntu-cve-2017-8834/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2017
libcroco multiple vulnerabilities
The cr_tknzr_parse_comment function in cr-tknzr.c in libcroco 0.6.12 can cause a denial of service (memory allocation error) via a crafted CSS file. The cr_parser_parse_selector_co function in cr-parser.c in libcroco 0.6.12 can cause a denial of service (infinite loop) via a crafted CSS file.
Mitigation:
Upgrade to the latest version of libcroco