A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
04 Nov 2025, 22:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Information
Published : 2025-07-10 14:15
Updated : 2025-11-04 22:16
NVD link : CVE-2025-7424
Mitre link : CVE-2025-7424
CVE.ORG link : CVE-2025-7424
JSON object : View
Products Affected
redhat
- openshift_container_platform
- enterprise_linux
xmlsoft
- libxslt
CWE
CWE-843
Access of Resource Using Incompatible Type ('Type Confusion')
