Arbitrary Memory Read in Libxslt (CVE-2012-2871)
Publish Date: 14 août 2015
Gravité: : Faible
Identifiant(s) CVE: : CVE-2012-2871
Date du conseil: 21 juillet 2015
Description
This vulnerability is related to the Hacking Team leak, which exposed the RCSAndroid code. The said malicious code could potentially allow surveillance operations for cybercriminals. Based on our investigation, one of the methods that attackers used to lead users into downloading RCSAndroid is to send a specially crafted URL to the recipients/users via SMS or email.