by @LeSuisse Activity log
- Created automatic suggestion
-
@LeSuisse
removed
2 packages
- python312Packages.libxslt
- python313Packages.libxslt
- @LeSuisse removed maintainer @jtojnar
- @LeSuisse accepted
- @LeSuisse published on GitHub
Libxslt: type confusion in exsltfuncresultcompfunction of libxslt
A flaw was found in the exsltFuncResultComp() function of libxslt, which handles EXSLT <func:result> elements during stylesheet parsing. Due to improper type handling, the function may treat an XML document node as a regular XML element node, resulting in a type confusion. This can cause unexpected memory reads and potential crashes. While difficult to exploit, the flaw could lead to application instability or denial of service.
Affected products
- <1.1.44
Package maintainers
Ignored maintainers (1)
-
@jtojnar Jan Tojnar <jtojnar@gmail.com>