Skip to main content

Vendor/product archive

xmlsoft / libxslt CVEs

Beta · best-effort

25 CVEs tagged to xmlsoft / libxslt5 Critical, 10 High, 10 Medium, 0 Low, 0 Unrated.

CVE-2025-24855

Published Mar 14, 2025

numbers.c in libxslt before 1.1.43 has a use-after-free because, in nested XPath evaluations, an XPath context node can be modified but never restored. This is related to xsltNumb…

CVSS 7.8 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2024-55549

Published Mar 14, 2025

xsltGetInheritedNsList in libxslt before 1.1.43 has a use-after-free issue related to exclusion of result prefixes.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5815

Published Dec 11, 2019

Type confusion in xsltNumberFormatGetMultipleLevel prior to libxslt 1.1.33 could allow attackers to potentially exploit heap corruption via crafted XML data.

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-5029

Published Apr 24, 2017

The xsltAddTextString function in transform.c in libxslt 1.1.29, as used in Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android,…

CVSS 8.8 · High

CVE-2015-9019

Published Apr 5, 2017

In libxslt 1.1.29 and earlier, the EXSLT math.random function was not initialized with a random seed during startup, which could cause usage of this function to produce predictabl…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-1684

Published Jun 5, 2016

numbers.c in libxslt before 1.1.29, as used in Google Chrome before 51.0.2704.63, mishandles the i format token for xsl:number data, which allows remote attackers to cause a denia…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2016-1683

Published Jun 5, 2016

numbers.c in libxslt before 1.1.29, as used in Google Chrome before 51.0.2704.63, mishandles namespace nodes, which allows remote attackers to cause a denial of service (out-of-bo…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2013-4520

Published Dec 14, 2013

xslt.c in libxslt before 1.1.25 allows context-dependent attackers to cause a denial of service (crash) via a stylesheet that embeds a DTD, which causes a structure to be accessed…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-6139

Published Apr 12, 2013

libxslt before 1.1.28 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an (1) empty match attribute in a XSL key to the xsltAddKey fun…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-1202

Published Mar 11, 2011

The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtai…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2935

Published Aug 1, 2008

Multiple heap-based buffer overflows in the rc4 (1) encryption (aka exsltCryptoRc4EncryptFunction) and (2) decryption (aka exsltCryptoRc4DecryptFunction) functions in crypto.c in…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 25 CVEsPage 1 of 1