CVE-2019-5815 PUBLISHED

Type confusion in xsltNumberFormatGetMultipleLevel prior to libxslt 1.1.33 could allow attackers to potentially exploit heap corruption via crafted XML data.

EPSS 0.11% · 29.6th percentile

Risk Scores

EPSS Score
0.11%
29.6th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSlibxslt0, 1.1.28-2, 1.1.28-2build1
Ubuntu:Pro:16.04:LTSlibxslt0, 1.1.28-2build2, 1.1.28-2.1
Ubuntu:18.04:LTSlibxslt0, 1.1.29-2.1ubuntu1, 1.1.29-4

Timeline

References

Open in Interactive Console →