CVE-2010-4494
highCVSS v3 Base Score
7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS Score
1.3%
Exploitation probability in 30 days
Top 20% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
Low
Confidentiality
P
Integrity
P
Availability
P
Published: December 7, 2010 (5637 days ago)
Last Modified: April 29, 2026
Vendor: Apache
Source: NVD
Vulnerability Report
Generated by CyberWatcher
Description
Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.
CWE
CWE-415Affected Products
google chromexmlsoft libxml2apple itunesapple safariapple iphone osapple mac os xopensuse opensusesuse suse linux enterprise serverfedoraproject fedoraredhat enterprise linux desktop