Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-10911

Опубликовано: 04 авг. 2025
Источник: redhat
CVSS3: 5.5

Описание

A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libxsltFix deferred
Red Hat Enterprise Linux 7libxsltFix deferred
Red Hat OpenShift Container Platform 4rhcosFix deferred
Red Hat Enterprise Linux 10libxsltFixedRHSA-2026:2858424.06.2026
Red Hat Enterprise Linux 10.0 Extended Update SupportlibxsltFixedRHSA-2026:2980925.06.2026
Red Hat Enterprise Linux 8libxsltFixedRHSA-2026:2635516.06.2026
Red Hat Enterprise Linux 8libxsltFixedRHSA-2026:2635516.06.2026
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportlibxsltFixedRHSA-2026:2997525.06.2026
Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-OnlibxsltFixedRHSA-2026:2997525.06.2026
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportlibxsltFixedRHSA-2026:3084729.06.2026

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-825
https://bugzilla.redhat.com/show_bug.cgi?id=2397838libxslt: use-after-free with key data stored cross-RVT

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
10 месяцев назад

A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash.

CVSS3: 5.5
nvd
10 месяцев назад

A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash.

msrc
8 месяцев назад

Libxslt: use-after-free with key data stored cross-rvt

CVSS3: 5.5
debian
10 месяцев назад

A use-after-free vulnerability was found in libxslt while parsing xsl ...

suse-cvrf
5 месяцев назад

Security update for libxslt

5.5 Medium

CVSS3