Search CVE reports


Toggle filters

1 – 10 of 35 results


CVE-2025-7425

Medium priority
Needs evaluation

A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents...

1 affected package

libxslt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxslt Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-7424

Medium priority
Needs evaluation

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the...

1 affected package

libxslt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxslt Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-24855

Medium priority

Some fixes available 5 of 8

numbers.c in libxslt before 1.1.43 has a use-after-free because, in nested XPath evaluations, an XPath context node can be modified but never restored. This is related to xsltNumberFormatGetValue, xsltEvalXPathPredicate,...

1 affected package

libxslt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxslt Fixed Fixed Fixed Needs evaluation
Show less packages

CVE-2024-55549

Medium priority

Some fixes available 5 of 8

xsltGetInheritedNsList in libxslt before 1.1.43 has a use-after-free issue related to exclusion of result prefixes.

1 affected package

libxslt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxslt Fixed Fixed Fixed Needs evaluation
Show less packages

CVE-2023-40403

Medium priority
Fixed

The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content...

1 affected package

libxslt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxslt Not affected Fixed Fixed Fixed
Show less packages

CVE-2021-30560

Medium priority
Fixed

Use after free in Blink XSLT in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

2 affected packages

chromium-browser, libxslt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not in release Fixed
libxslt Fixed Fixed Fixed
Show less packages

CVE-2019-5815

Medium priority
Fixed

Type confusion in xsltNumberFormatGetMultipleLevel prior to libxslt 1.1.33 could allow attackers to potentially exploit heap corruption via crafted XML data.

2 affected packages

libxslt, chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxslt Not affected Not affected Fixed
chromium-browser Not affected Not in release Not affected
Show less packages

CVE-2019-18197

Medium priority
Fixed

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and...

1 affected package

libxslt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxslt Fixed
Show less packages

CVE-2019-13118

Low priority

Some fixes available 4 of 5

In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid character/length combination could be passed to xsltNumberFormatDecimal, leading to a read of...

1 affected package

libxslt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxslt Fixed
Show less packages

CVE-2019-13117

Low priority

Some fixes available 4 of 5

In numbers.c in libxslt 1.1.33, an xsl:number with certain format strings could lead to a uninitialized read in xsltNumberFormatInsertNumbers. This could allow an attacker to discern whether a byte on the stack contains...

1 affected package

libxslt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxslt Fixed
Show less packages