Back

HIGH

libxslt: use after free in xsltCopyText in transform.c could lead to information disclosure

Published Oct 18, 2019

Description

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

Affected products

Remediation

Red Hat statement

Red Hat OpenStack consumes fixes from the base Red Hat Enterprise Linux Operating System. Therefore the libxslt package provided by Red Hat OpenStack has been marked as 'will not fix'.

References (24)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner mitre
Published Oct 18, 2019
Updated May 28, 2026
Reserved Oct 18, 2019

CISA Vulnrichment

Updated May 28, 2026

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Oct 18, 2019
Bugzilla 1770768

ENISA EUVD

Assigner mitre
Published Oct 18, 2019
Updated May 28, 2026