{"api_version":"1","generated_at":"2026-07-23T06:46:20+00:00","cve":"CVE-2011-1202","urls":{"html":"https://cve.report/CVE-2011-1202","api":"https://cve.report/api/cve/CVE-2011-1202.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2011-1202","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2011-1202"},"summary":{"title":"CVE-2011-1202","description":"The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.","state":"PUBLISHED","assigner":"mitre","published_at":"2011-03-11 02:01:20","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-200","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.3","severity":"","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:N/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.vupen.com/english/advisories/2011/0628","name":"http://www.vupen.com/english/advisories/2011/0628","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Permissions Required"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://git.gnome.org/browse/libxslt/commit/?id=ecb6bcb8d1b7e44842edde3929f412d46b40c89f","name":"http://git.gnome.org/browse/libxslt/commit/?id=ecb6bcb8d1b7e44842edde3929f412d46b40c89f","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory"],"title":"libxslt - XSLT transformation library","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=684386","name":"https://bugzilla.redhat.com/show_bug.cgi?id=684386","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Issue Tracking","Third Party Advisory"],"title":"Bug 684386 – CVE-2011-1202 libxslt: Heap address leak in XLST","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2012:164","name":"http://www.mandriva.com/security/advisories?name=MDVSA-2012:164","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Support / Security / Advisories /  / MDVSA-2012:164 | Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:079","name":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:079","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Support / Security / Advisories /  / MDVSA-2011:079 | Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://downloads.avaya.com/css/P8/documents/100144158","name":"http://downloads.avaya.com/css/P8/documents/100144158","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"ASA-2011-194 (RHSA-2011-0471)","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://scarybeastsecurity.blogspot.com/2011/03/multi-browser-heap-address-leak-in-xslt.html","name":"http://scarybeastsecurity.blogspot.com/2011/03/multi-browser-heap-address-leak-in-xslt.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Security: Multi-browser heap address leak in XSLT","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://googlechromereleases.blogspot.com/2011/03/chrome-stable-release.html","name":"http://googlechromereleases.blogspot.com/2011/03/chrome-stable-release.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Chrome Releases: Chrome Stable Release","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/65966","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/65966","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/46785","name":"http://www.securityfocus.com/bid/46785","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Google Chrome prior to 10.0.648.127 Multiple Security Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14244","name":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14244","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Repository  /  Oval Repository","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://code.google.com/p/chromium/issues/detail?id=73716","name":"http://code.google.com/p/chromium/issues/detail?id=73716","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Issue Tracking","Patch","Vendor Advisory"],"title":"Issue 73716 - \n chromium -\n \n Leak of address of heap object via xslt generate-id() function - \n An open-source browser project to help move the web forward. - Google Project Hosting","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2011-1202","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2011-1202","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2011","cve_id":"1202","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"google","cpe5":"chrome","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"1202","vulnerable":"1","versionEndIncluding":"1.1.26","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"xmlsoft","cpe5":"libxslt","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T22:21:33.663Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"oval:org.mitre.oval:def:14244","tags":["vdb-entry","signature","x_refsource_OVAL","x_transferred"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14244"},{"name":"46785","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/46785"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://git.gnome.org/browse/libxslt/commit/?id=ecb6bcb8d1b7e44842edde3929f412d46b40c89f"},{"name":"MDVSA-2011:079","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:079"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://googlechromereleases.blogspot.com/2011/03/chrome-stable-release.html"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://scarybeastsecurity.blogspot.com/2011/03/multi-browser-heap-address-leak-in-xslt.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://code.google.com/p/chromium/issues/detail?id=73716"},{"name":"google-xslt-info-disclosure(65966)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/65966"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=684386"},{"name":"MDVSA-2012:164","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2012:164"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://downloads.avaya.com/css/P8/documents/100144158"},{"name":"ADV-2011-0628","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2011/0628"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2011-03-08T00:00:00.000Z","descriptions":[{"lang":"en","value":"The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-09-18T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"oval:org.mitre.oval:def:14244","tags":["vdb-entry","signature","x_refsource_OVAL"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14244"},{"name":"46785","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/46785"},{"tags":["x_refsource_CONFIRM"],"url":"http://git.gnome.org/browse/libxslt/commit/?id=ecb6bcb8d1b7e44842edde3929f412d46b40c89f"},{"name":"MDVSA-2011:079","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:079"},{"tags":["x_refsource_CONFIRM"],"url":"http://googlechromereleases.blogspot.com/2011/03/chrome-stable-release.html"},{"tags":["x_refsource_MISC"],"url":"http://scarybeastsecurity.blogspot.com/2011/03/multi-browser-heap-address-leak-in-xslt.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://code.google.com/p/chromium/issues/detail?id=73716"},{"name":"google-xslt-info-disclosure(65966)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/65966"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=684386"},{"name":"MDVSA-2012:164","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2012:164"},{"tags":["x_refsource_CONFIRM"],"url":"http://downloads.avaya.com/css/P8/documents/100144158"},{"name":"ADV-2011-0628","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2011/0628"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2011-1202","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"oval:org.mitre.oval:def:14244","refsource":"OVAL","url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14244"},{"name":"46785","refsource":"BID","url":"http://www.securityfocus.com/bid/46785"},{"name":"http://git.gnome.org/browse/libxslt/commit/?id=ecb6bcb8d1b7e44842edde3929f412d46b40c89f","refsource":"CONFIRM","url":"http://git.gnome.org/browse/libxslt/commit/?id=ecb6bcb8d1b7e44842edde3929f412d46b40c89f"},{"name":"MDVSA-2011:079","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:079"},{"name":"http://googlechromereleases.blogspot.com/2011/03/chrome-stable-release.html","refsource":"CONFIRM","url":"http://googlechromereleases.blogspot.com/2011/03/chrome-stable-release.html"},{"name":"http://scarybeastsecurity.blogspot.com/2011/03/multi-browser-heap-address-leak-in-xslt.html","refsource":"MISC","url":"http://scarybeastsecurity.blogspot.com/2011/03/multi-browser-heap-address-leak-in-xslt.html"},{"name":"http://code.google.com/p/chromium/issues/detail?id=73716","refsource":"CONFIRM","url":"http://code.google.com/p/chromium/issues/detail?id=73716"},{"name":"google-xslt-info-disclosure(65966)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/65966"},{"name":"https://bugzilla.redhat.com/show_bug.cgi?id=684386","refsource":"CONFIRM","url":"https://bugzilla.redhat.com/show_bug.cgi?id=684386"},{"name":"MDVSA-2012:164","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDVSA-2012:164"},{"name":"http://downloads.avaya.com/css/P8/documents/100144158","refsource":"CONFIRM","url":"http://downloads.avaya.com/css/P8/documents/100144158"},{"name":"ADV-2011-0628","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2011/0628"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2011-1202","datePublished":"2011-03-11T01:00:00.000Z","dateReserved":"2011-03-03T00:00:00.000Z","dateUpdated":"2024-08-06T22:21:33.663Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2011-03-11 02:01:20","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-200","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:N/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*","versionEndExcluding":"10.0.648.127","matchCriteriaId":"C7AD8B5C-C973-4445-B111-716D9814CE79"},{"vulnerable":true,"criteria":"cpe:2.3:a:xmlsoft:libxslt:*:*:*:*:*:*:*:*","versionEndIncluding":"1.1.26","matchCriteriaId":"9251F19D-BEA4-4ED4-9A4B-EA89E795C6D0"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2011","CveId":"1202","Ordinal":"1","Title":"CVE-2011-1202","CVE":"CVE-2011-1202","Year":"2011"},"notes":[{"CveYear":"2011","CveId":"1202","Ordinal":"1","NoteData":"The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.","Type":"Description","Title":"CVE-2011-1202"},{"CveYear":"2011","CveId":"1202","Ordinal":"2","NoteData":"2011-03-10","Type":"Other","Title":"Published"},{"CveYear":"2011","CveId":"1202","Ordinal":"3","NoteData":"2017-09-18","Type":"Other","Title":"Modified"}]}}}