Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-28243

Опубликовано: 23 июн. 2026
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2026-28243: libxslt security update (MODERATE)

[1.1.34-14.0.1.el9_8.1]

  • Fix memory leak in exclPrefixPush [Orabug: 37871881]
  • Added libxslt-oracle-enterprise.patch and replaced doc/redhat.gif in tarball

[1.1.34-14.1]

  • Fix CVE-2025-10911 (RHEL-171991)

[1.1.34-14.1]

  • Fix upgrade path for CVE-2023-40403 (RHEL-82213)

[1.1.34-12.1]

  • Fix CVE-2023-40403 (RHEL-82213)

[1.1.34-12]

  • Include alloc changes into previous patch (RHEL-83514)

[1.1.34-11]

  • Fix CVE-2024-55549 (RHEL-83514)

[1.1.34-10]

  • Fix CVE-2025-24855 (RHEL-83500)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

libxslt

1.1.34-14.0.1.el9_8.1

libxslt-devel

1.1.34-14.0.1.el9_8.1

Oracle Linux x86_64

libxslt

1.1.34-14.0.1.el9_8.1

libxslt-devel

1.1.34-14.0.1.el9_8.1

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
10 месяцев назад

A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash.

CVSS3: 5.5
redhat
12 месяцев назад

A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash.

CVSS3: 5.5
nvd
10 месяцев назад

A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash.

msrc
8 месяцев назад

Libxslt: use-after-free with key data stored cross-rvt

CVSS3: 5.5
debian
10 месяцев назад

A use-after-free vulnerability was found in libxslt while parsing xsl ...