CVE-2010-4008

Exp

libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which allows context-dependent attackers to cause a denial of service (application crash) via a crafted XML document.

Published: 2010-11-16 Last update: 2026-06-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2010-4008 is rated High Exploit Risk (62.1/100): CVSS Medium severity, with medium exploitation likelihood (EPSS 3.13%). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Public exploit references (Exploit-DB) for CVE-2010-4008

EDB-ID Source Kind Published Link
nvd_ref exploit_tag Exploit-DB ↗

Exploit prediction scoring system (EPSS) score for CVE-2010-4008

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-07-02 3.45% 3.13% -0.32%
2 2026-06-15 0.76% 3.45% +2.69%
3 2025-12-01 0.76%

Full EPSS history (11 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2010-4008

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
4.3 2.0 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:M)
Exploitation needs some favorable conditions, but not exceptional ones.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:N)
No confidentiality impact.
Integrity impact (I:N)
No integrity impact.
Availability impact (A:P)
Partial availability impact.
8.6 2.9 [email protected]

Weakness enumeration for CVE-2010-4008

OS Trackers for CVE-2010-4008

vendor priority summary link
debian not yet assigned CVE-2010-4008 not yet assigned priority: Debian including 1 source packages (libxml2), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. https://security-tracker.debian.org/tracker/CVE-2010-4008
gentoo high CVE-2010-4008: 1 GLSA(s) (201110-26), 1 atom(s) (dev-libs/libxml2); latest impact high. https://bugs.gentoo.org/buglist.cgi?quicksearch=CVE-2010-4008
redhat low https://access.redhat.com/security/cve/CVE-2010-4008
ubuntu medium CVE-2010-4008 medium priority: Ubuntu including 1 source packages (libxml2), 6 status rows across 6 suites (dapper, hardy, karmic, lucid, maverick, upstream): released 6. https://ubuntu.com/security/CVE-2010-4008

Affected software / configurations for CVE-2010-4008

Vendor Product Version Raw CPE
google chrome < 7.0.517.44 cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
apple itunes < 10.2 cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*
apple safari < 5.0.4 cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
apple iphone_os < 4.2 cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
apple mac_os_x < 10.6.7 cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*
xmlsoft libxml2 < 2.7.8 cpe:2.3:a:xmlsoft:libxml2:*:*:*:*:*:*:*:*
debian debian_linux 5.0 cpe:2.3:o:debian:debian_linux:5.0:*:*:*:*:*:*:*
debian debian_linux 6.0 cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*
canonical ubuntu_linux 6.06 cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:lts:*:*:*
canonical ubuntu_linux 8.04 cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:lts:*:*:*
canonical ubuntu_linux 9.10 cpe:2.3:o:canonical:ubuntu_linux:9.10:*:*:*:*:*:*:*
canonical ubuntu_linux 10.04 cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*
canonical ubuntu_linux 10.10 cpe:2.3:o:canonical:ubuntu_linux:10.10:*:*:*:*:*:*:*
redhat enterprise_linux_desktop 6.0 cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
redhat enterprise_linux_server 6.0 cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
redhat enterprise_linux_server_eus 6.3 cpe:2.3:o:redhat:enterprise_linux_server_eus:6.3:*:*:*:*:*:*:*
redhat enterprise_linux_workstation 6.0 cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
opensuse opensuse 11.1 cpe:2.3:o:opensuse:opensuse:11.1:*:*:*:*:*:*:*
opensuse opensuse 11.2 cpe:2.3:o:opensuse:opensuse:11.2:*:*:*:*:*:*:*
opensuse opensuse 11.3 cpe:2.3:o:opensuse:opensuse:11.3:*:*:*:*:*:*:*
suse suse_linux_enterprise_server 10 cpe:2.3:o:suse:suse_linux_enterprise_server:10:sp3:*:*:*:*:*:*
suse suse_linux_enterprise_server 11 cpe:2.3:o:suse:suse_linux_enterprise_server:11:-:*:*:*:*:*:*
suse suse_linux_enterprise_server 11 cpe:2.3:o:suse:suse_linux_enterprise_server:11:sp1:*:*:*:*:*:*
apache openoffice >= 2.0.0, <= 2.4.3 cpe:2.3:a:apache:openoffice:*:*:*:*:*:*:*:*
apache openoffice >= 3.0.0, < 3.3.0 cpe:2.3:a:apache:openoffice:*:*:*:*:*:*:*:*

References for CVE-2010-4008

URL Tags
http://blog.bkis.com/en/libxml2-vulnerability-in-google-chrome-and-apple-safari/ Broken Link
http://code.google.com/p/chromium/issues/detail?id=58731 Exploit Issue Tracking Patch Vendor Advisory
http://googlechromereleases.blogspot.com/2010/11/stable-channel-update.html Vendor Advisory
http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.html Mailing List Third Party Advisory
http://lists.apple.com/archives/security-announce/2011//Mar/msg00004.html Mailing List Third Party Advisory
http://lists.apple.com/archives/security-announce/2011/Mar/msg00000.html Mailing List Third Party Advisory
http://lists.apple.com/archives/security-announce/2011/Mar/msg00006.html Mailing List Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00000.html Mailing List Third Party Advisory
http://mail.gnome.org/archives/xml/2010-November/msg00015.html Mailing List Release Notes Vendor Advisory
http://marc.info/?l=bugtraq&m=130331363227777&w=2 Third Party Advisory
http://marc.info/?l=bugtraq&m=139447903326211&w=2 Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2013-0217.html Third Party Advisory
http://secunia.com/advisories/40775 Third Party Advisory
http://secunia.com/advisories/42109 Third Party Advisory Vendor Advisory
http://secunia.com/advisories/42175 Third Party Advisory Vendor Advisory
http://secunia.com/advisories/42314 Third Party Advisory
http://secunia.com/advisories/42429 Third Party Advisory
http://support.apple.com/kb/HT4456 Third Party Advisory
http://support.apple.com/kb/HT4554 Third Party Advisory
http://support.apple.com/kb/HT4566 Third Party Advisory
http://support.apple.com/kb/HT4581 Third Party Advisory
http://www.debian.org/security/2010/dsa-2128 Third Party Advisory
http://www.mandriva.com/security/advisories?name=MDVSA-2010:243 Third Party Advisory
http://www.openoffice.org/security/cves/CVE-2010-4008_CVE-2010-4494.html Third Party Advisory
http://www.redhat.com/support/errata/RHSA-2011-1749.html Third Party Advisory
http://www.securityfocus.com/bid/44779 Third Party Advisory VDB Entry
http://www.ubuntu.com/usn/USN-1016-1 Third Party Advisory
http://www.vupen.com/english/advisories/2010/3046 Permissions Required
http://www.vupen.com/english/advisories/2010/3076 Permissions Required
http://www.vupen.com/english/advisories/2010/3100 Permissions Required
http://www.vupen.com/english/advisories/2011/0230 Permissions Required
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12148 Third Party Advisory
cvelogic Threat Intelligence