Описание
Type confusion in xsltNumberFormatGetMultipleLevel prior to libxslt 1.1.33 could allow attackers to potentially exploit heap corruption via crafted XML data.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | not-affected | 75.0.3770.90-0ubuntu0.18.04.1 |
| cosmic | not-affected | 75.0.3770.90-0ubuntu0.18.04.1 |
| devel | not-affected | 75.0.3770.80-0ubuntu1~snap2 |
| disco | not-affected | 75.0.3770.90-0ubuntu0.18.04.1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was ignored [no longer updated]] |
| esm-infra/focal | DNE | focal was not-affected [75.0.3770.80-0ubuntu1~snap2] |
| focal | not-affected | 75.0.3770.80-0ubuntu1~snap2 |
| jammy | not-affected | 75.0.3770.80-0ubuntu1~snap2 |
| kinetic | not-affected | 75.0.3770.80-0ubuntu1~snap2 |
| precise/esm | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 1.1.29-5ubuntu0.3 |
| devel | not-affected | 1.1.35-1 |
| esm-infra-legacy/trusty | released | 1.1.28-2ubuntu0.2+esm2 |
| esm-infra/bionic | released | 1.1.29-5ubuntu0.3 |
| esm-infra/focal | not-affected | 1.1.34-4 |
| esm-infra/xenial | released | 1.1.28-2.1ubuntu0.3+esm1 |
| focal | not-affected | 1.1.34-4 |
| jammy | not-affected | 1.1.34-4build2 |
| kinetic | not-affected | 1.1.35-1 |
| trusty | ignored | end of standard support |
Показывать по
Ссылки на источники
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
Type confusion in xsltNumberFormatGetMultipleLevel prior to libxslt 1.1.33 could allow attackers to potentially exploit heap corruption via crafted XML data.
Type confusion in xsltNumberFormatGetMultipleLevel prior to libxslt 1.1.33 could allow attackers to potentially exploit heap corruption via crafted XML data.
Type confusion in xsltNumberFormatGetMultipleLevel prior to libxslt 1. ...
Nokogiri implementation of libxslt vulnerable to heap corruption
Уязвимость функции xsltNumberFormatGetMultipleLevel библиотеки для анализа XML-документов libxslt, связанная с доступом к ресурсу через несовместимые типы, позволяющая нарушителю вызвать отказ в обслуживании
5 Medium
CVSS2
7.5 High
CVSS3