Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-7424

Опубликовано: 10 июл. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.5

Описание

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.

РелизСтатусПримечание
devel

released

1.1.43-0.3
esm-infra-legacy/trusty

released

1.1.28-2ubuntu0.2+esm5
esm-infra-legacy/xenial

released

1.1.28-2.1ubuntu0.3+esm4
esm-infra/bionic

released

1.1.29-5ubuntu0.3+esm3
esm-infra/focal

released

1.1.34-4ubuntu0.20.04.3+esm2
esm-infra/xenial

released

1.1.28-2.1ubuntu0.3+esm4
jammy

released

1.1.34-4ubuntu0.22.04.5
noble

released

1.1.39-0exp1ubuntu0.24.04.3
plucky

released

1.1.39-0exp1ubuntu4.1
questing

released

1.1.43-0.3

Показывать по

EPSS

Процентиль: 65%
0.012
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
около 1 года назад

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.

CVSS3: 7.5
nvd
около 1 года назад

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.

CVSS3: 7.3
msrc
11 месяцев назад

Libxslt: type confusion in xmlnode.psvi between stylesheet and source nodes

CVSS3: 7.5
debian
около 1 года назад

A flaw was found in the libxslt library. The same memory field, psvi, ...

CVSS3: 7.8
github
около 1 года назад

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.

EPSS

Процентиль: 65%
0.012
Низкий

7.5 High

CVSS3