header-logo
Suggest Exploit
vendor:
libxslt
by:
SecurityFocus
7.5
CVSS
HIGH
Heap-Based Buffer-Overflow
119
CWE
Product Name: libxslt
Affected Version From: 1.1.2008
Affected Version To: 1.1.24
Patch Exists: YES
Related CWE: N/A
CPE: libxslt
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2008

libxslt Heap-Based Buffer-Overflow Vulnerability

The 'libxslt' library is prone to a heap-based buffer-overflow vulnerability because the software fails to perform adequate boundary checks on user-supplied data. An attacker may exploit this issue to execute arbitrary code with the privileges of the user running an application that relies on the affected library. Failed exploit attempts will likely result in denial-of-service conditions.

Mitigation:

Upgrade to the latest version of libxslt library.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/30467/info

The 'libxslt' library is prone to a heap-based buffer-overflow vulnerability because the software fails to perform adequate boundary checks on user-supplied data.

An attacker may exploit this issue to execute arbitrary code with the privileges of the user running an application that relies on the affected library. Failed exploit attempts will likely result in denial-of-service conditions.

This issue affects libxslt 1.1.8 to 1.1.24. 

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/32133.xsl