CVE-2016-1684
—CVSS 3.0
7.5 high
EPSS
2%p78
Published
()
Modified
Description
numbers.c in libxslt before 1.1.29, as used in Google Chrome before 51.0.2704.63, mishandles the i format token for xsl:number data, which allows remote attackers to cause a denial of service (integer overflow or resource consumption) or possibly have unspecified other impact via a crafted document.
In the news0 stories
No ingested article mentions this CVE yet.