Use after free in libxml2 before 2.9.5, as used in Google Chrome prior to 63.0.3239.84 and other products, allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| nokogiri(RubyGems) | 0 | 1.8.2 | N/A |
CVSS Metrics