Описание
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents the proper cleanup of ID attributes. As a result, the system may access freed memory, causing crashes or enabling attackers to trigger heap corruption.
Релиз | Статус | Примечание |
---|---|---|
devel | deferred | 2025-10-03 |
esm-infra-legacy/trusty | deferred | 2025-10-03 |
esm-infra/bionic | deferred | 2025-10-03 |
esm-infra/focal | deferred | 2025-10-03 |
esm-infra/xenial | deferred | 2025-10-03 |
jammy | deferred | 2025-10-03 |
noble | deferred | 2025-10-03 |
oracular | ignored | end of life, was needs-triage |
plucky | deferred | 2025-10-03 |
questing | deferred | 2025-10-03 |
Показывать по
7.8 High
CVSS3
Связанные уязвимости
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents the proper cleanup of ID attributes. As a result, the system may access freed memory, causing crashes or enabling attackers to trigger heap corruption.
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents the proper cleanup of ID attributes. As a result, the system may access freed memory, causing crashes or enabling attackers to trigger heap corruption.
A flaw was found in libxslt where the attribute type, atype, flags are ...
7.8 High
CVSS3