CVE-2011-1713 Information

Description

Microsoft msxml.dll as used in Internet Explorer 8 on Windows 7 allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function. NOTE: this might overlap CVE-2011-1202.

Reference

http://scarybeastsecurity.blogspot.com/2011/03/multi-browser-heap-address-leak-in-xslt.html https://exchange.xforce.ibmcloud.com/vulnerabilities/66835 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A12693

Share on: