ZeroHour

CVE-2019-5815

CVSS 3.1
7.5 high
EPSS
2%p77
Published
()
Modified
Description

Type confusion in xsltNumberFormatGetMultipleLevel prior to libxslt 1.1.33 could allow attackers to potentially exploit heap corruption via crafted XML data.

Vendors
xmlsoftdebian
Products
libxslt, debian linux
Weakness
CWE-787, CWE-843
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.