Home

Description

xsltGetInheritedNsList in libxslt before 1.1.43 has a use-after-free issue related to exclusion of result prefixes.

PUBLISHED Reserved 2024-12-08 | Published 2025-03-14 | Updated 2025-11-03 | Assigner mitre




HIGH: 7.8CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:H

Problem types

CWE-416 Use After Free

Product status

Default status
unaffected

Any version before 1.1.43
affected

References

lists.debian.org/debian-lts-announce/2025/03/msg00015.html

gitlab.gnome.org/GNOME/libxslt/-/issues/127

cve.org (CVE-2024-55549)

nvd.nist.gov (CVE-2024-55549)

Download JSON