Логотип exploitDog
bind:"CVE-2019-18197" OR bind:"CVE-2019-11068"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2019-18197" OR bind:"CVE-2019-11068"

Количество 29

Количество 29

oracle-oval логотип

ELSA-2020-4464

больше 4 лет назад

ELSA-2020-4464: libxslt security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-4005

почти 5 лет назад

ELSA-2020-4005: libxslt security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2019-18197

почти 6 лет назад

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2019-18197

почти 6 лет назад

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-18197

почти 6 лет назад

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-18197

почти 6 лет назад

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable i ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2019-11068

больше 6 лет назад

libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2019-11068

больше 6 лет назад

libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded.

CVSS3: 6.3
EPSS: Низкий
nvd логотип

CVE-2019-11068

больше 6 лет назад

libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2019-11068

больше 6 лет назад

libxslt through 1.1.33 allows bypass of a protection mechanism because ...

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0920-2

почти 5 лет назад

Security update for libxslt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0920-1

больше 5 лет назад

Security update for libxslt

EPSS: Низкий
github логотип

GHSA-242x-7cm6-4w8j

около 3 лет назад

Nokogiri affected by libxslt Use of Uninitialized Resource/Use After Free vulnerability

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2020-01341

почти 6 лет назад

Уязвимость функции xsltCopyText (transform.c) библиотеки libxslt, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1433-1

около 6 лет назад

Security update for libxslt

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1430-1

около 6 лет назад

Security update for libxslt

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1428-1

около 6 лет назад

Security update for libxslt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1232-1

около 6 лет назад

Security update for libxslt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1221-2

около 6 лет назад

Security update for libxslt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1221-1

около 6 лет назад

Security update for libxslt

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2020-4464

ELSA-2020-4464: libxslt security update (MODERATE)

больше 4 лет назад
oracle-oval логотип
ELSA-2020-4005

ELSA-2020-4005: libxslt security update (MODERATE)

почти 5 лет назад
ubuntu логотип
CVE-2019-18197

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

CVSS3: 7.5
2%
Низкий
почти 6 лет назад
redhat логотип
CVE-2019-18197

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

CVSS3: 7.5
2%
Низкий
почти 6 лет назад
nvd логотип
CVE-2019-18197

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

CVSS3: 7.5
2%
Низкий
почти 6 лет назад
debian логотип
CVE-2019-18197

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable i ...

CVSS3: 7.5
2%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2019-11068

libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded.

CVSS3: 9.8
1%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-11068

libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded.

CVSS3: 6.3
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-11068

libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded.

CVSS3: 9.8
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-11068

libxslt through 1.1.33 allows bypass of a protection mechanism because ...

CVSS3: 9.8
1%
Низкий
больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0920-2

Security update for libxslt

2%
Низкий
почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:0920-1

Security update for libxslt

2%
Низкий
больше 5 лет назад
github логотип
GHSA-242x-7cm6-4w8j

Nokogiri affected by libxslt Use of Uninitialized Resource/Use After Free vulnerability

CVSS3: 7.5
2%
Низкий
около 3 лет назад
fstec логотип
BDU:2020-01341

Уязвимость функции xsltCopyText (transform.c) библиотеки libxslt, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
2%
Низкий
почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1433-1

Security update for libxslt

1%
Низкий
около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1430-1

Security update for libxslt

1%
Низкий
около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1428-1

Security update for libxslt

1%
Низкий
около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1232-1

Security update for libxslt

1%
Низкий
около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1221-2

Security update for libxslt

1%
Низкий
около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1221-1

Security update for libxslt

1%
Низкий
около 6 лет назад

Уязвимостей на страницу