Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-18197

Опубликовано: 18 окт. 2019
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

Отчет

Red Hat OpenStack consumes fixes from the base Red Hat Enterprise Linux Operating System. Therefore the libxslt package provided by Red Hat OpenStack has been marked as 'will not fix'.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5libxsltOut of support scope
Red Hat Enterprise Linux 6libxsltOut of support scope
Red Hat OpenStack Platform 10 (Newton)libxsltWill not fix
Red Hat OpenStack Platform 13 (Queens)libxsltWill not fix
Red Hat OpenStack Platform 14 (Rocky)libxsltWill not fix
Red Hat Storage 3libxsltAffected
Red Hat Enterprise Linux 6 Supplementarychromium-browserFixedRHSA-2020:051417.02.2020
Red Hat Enterprise Linux 7libxsltFixedRHSA-2020:400529.09.2020
Red Hat Enterprise Linux 8libxsltFixedRHSA-2020:446404.11.2020
Red Hat Enterprise Linux 8libxsltFixedRHSA-2020:446404.11.2020

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1770768libxslt: use after free in xsltCopyText in transform.c could lead to information disclosure

EPSS

Процентиль: 81%
0.0154
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

CVSS3: 7.5
nvd
почти 6 лет назад

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

CVSS3: 7.5
debian
почти 6 лет назад

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable i ...

suse-cvrf
почти 5 лет назад

Security update for libxslt

suse-cvrf
больше 5 лет назад

Security update for libxslt

EPSS

Процентиль: 81%
0.0154
Низкий

7.5 High

CVSS3