Denial of Service Vulnerability in libcroco Affecting Multiple Applications
CVE-2017-8871
6.5MEDIUM
What is CVE-2017-8871?
The cr_parser_parse_selector_core function in libcroco version 0.6.12 has a vulnerability that allows remote attackers to craft malicious CSS files. Exploiting this weakness can lead to a denial of service through an infinite loop, significantly increasing CPU consumption and potentially disrupting service availability.