Known vulnerabilities in libxslt (Red Hat package)
Vendor:
Red Hat Inc.
Software:
libxslt (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:libxslt_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
11
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
1.1.34-14.el9_8.1
1.1.32-8.el8_6.1
1.1.32-8.el8_8.1
1.1.32-8.el8_4.1
1.1.39-8.el10_2.1
1.1.32-6.4.el8_10
1.1.34-13.el9_6.1
1.1.34-14.el9_7.1
1.1.32-6.2.el8_10
1.1.34-13.el9_6
1.1.28-9.el7_9
1.1.34-9.el9_5.2
1.1.34-11.el9_0
1.1.32-8.el8_4
1.1.32-6.el8_2
1.1.32-6.1.el8_10
1.1.34-11.el9_2
1.1.34-13.el9_4
1.1.28-8.el7_9
1.1.34-10.el9_4
1.1.34-9.el9_5.1
1.1.17-4.el5_8.3
1.1.26-2.el6_3.1
1.1.11-1.el4_7.2
1.1.17-2.el5_2.2
1.1.11-1.el4_6.1
1.1.17-2.el5_1.1
1.1.32-5.el8
1.1.28-6.el7
1.1.32-4.el8
1.1.28-5.el7
1.1.26-2.el6_3
1.1.26-2.el6
Vulnerabilities (11)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU117356 - Use After Free CVE-2025-10911 |
CWE-416 | Medium | 1.1.32-6.4.el8_10, 1.1.32-8.el8_4.1, 1.1.32-8.el8_6.1, 1.1.32-8.el8_8.1, 1.1.39-8.el10_2.1 | 17.10.2025 |
SB2025101756 SB2025101762 SB2025101763 and 24 more |
||
| #VU105946 - Use After Free CVE-2025-24855 |
CWE-416 | High | 1.1.28-8.el7_9, 1.1.28-9.el7_9, 1.1.32-6.el8_2, 1.1.32-6.1.el8_10, 1.1.32-8.el8_4, 1.1.34-9.el9_5.1, 1.1.34-10.el9_4, 1.1.34-11.el9_0 | 21.03.2025 |
SB2025031964 SB2025032154 SB2025032155 and 63 more |
||
| #VU105879 - Use After Free CVE-2024-55549 |
CWE-416 | High | 1.1.28-8.el7_9, 1.1.28-9.el7_9, 1.1.32-6.el8_2, 1.1.32-6.1.el8_10, 1.1.32-8.el8_4, 1.1.34-9.el9_5.2, 1.1.34-11.el9_0, 1.1.34-11.el9_2, 1.1.34-13.el9_4, 1.1.34-13.el9_6 | 19.03.2025 |
SB2025031964 SB2025031965 SB2025032155 and 69 more |
||
| #VU81168 - Out-of-bounds read CVE-2023-40403 |
CWE-125 | Low | 1.1.32-6.2.el8_10, 1.1.34-13.el9_6.1, 1.1.34-14.el9_7.1 | 26.09.2023 |
SB2023092664 SB2023092707 SB2023092143 and 22 more |
||
| #VU21942 - Memory corruption CVE-2019-18197 |
CWE-119 | High | 1.1.28-6.el7, 1.1.32-5.el8 | 19.10.2019 |
SB2019070210 SB2019102303 SB2020020601 and 23 more |
||
| #VU18678 - Permissions, Privileges, and Access Controls CVE-2019-12447 |
CWE-264 | Critical | 1.1.32-4.el8 | 05.06.2019 |
SB2019070801 SB2019070802 SB2020042843 and 3 more |
||
| #VU18677 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2019-12448 |
CWE-362 | High | 1.1.32-4.el8 | 05.06.2019 |
SB2019070801 SB2019070802 SB2020042843 and 3 more |
||
| #VU18676 - Permissions, Privileges, and Access Controls CVE-2019-12449 |
CWE-264 | Critical | 1.1.32-4.el8 | 05.06.2019 |
SB2019070801 SB2019070802 SB2020042843 and 3 more |
||
| #VU18276 - Permissions, Privileges, and Access Controls CVE-2019-11068 |
CWE-264 | Medium | 1.1.28-6.el7, 1.1.32-5.el8 | 16.04.2019 |
SB2019041601 SB2019041507 SB2019052205 and 22 more |
||
| #VU17666 - Permissions, Privileges, and Access Controls CVE-2019-3825 |
CWE-264 | Low | 1.1.32-4.el8 | 14.02.2019 |
SB2019021402 SB2019030810 SB2019030304 and 4 more |
||
| #VU16692 - Stack-based buffer overflow CVE-2018-20337 |
CWE-121 | Low | 1.1.32-4.el8 | 25.12.2018 |
SB2018122504 SB2019012912 SB2019052213 and 2 more |