Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-7424

Опубликовано: 10 июл. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.8

Описание

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.

РелизСтатусПримечание
devel

released

1.1.43-0.3
esm-infra-legacy/trusty

released

1.1.28-2ubuntu0.2+esm5
esm-infra/bionic

released

1.1.29-5ubuntu0.3+esm3
esm-infra/focal

released

1.1.34-4ubuntu0.20.04.3+esm2
esm-infra/xenial

released

1.1.28-2.1ubuntu0.3+esm4
jammy

released

1.1.34-4ubuntu0.22.04.5
noble

released

1.1.39-0exp1ubuntu0.24.04.3
plucky

released

1.1.39-0exp1ubuntu4.1
questing

released

1.1.43-0.3
upstream

released

1.1.44,1.1.43-0.1

Показывать по

EPSS

Процентиль: 27%
0.00095
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
redhat
6 месяцев назад

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.

CVSS3: 7.8
nvd
6 месяцев назад

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.

CVSS3: 7.3
msrc
4 месяца назад

Libxslt: type confusion in xmlnode.psvi between stylesheet and source nodes

CVSS3: 7.8
debian
6 месяцев назад

A flaw was found in the libxslt library. The same memory field, psvi, ...

CVSS3: 7.8
github
6 месяцев назад

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.

EPSS

Процентиль: 27%
0.00095
Низкий

7.8 High

CVSS3