VDB
MAGEIA-2017-125
MAGEIA-2017-125
PUBLISHED
Holger Fuhrmannek discovered an integer overflow in the xsltAddTextString() function in Libxslt. An attacker could use this to craft a malicious document that, when opened, could cause a denial of service (application crash) or possible execute arbitrary code (CVE-2017-5029).
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mageia | zlib | 0, 1.2.11-4.1.mga6 |
| Mageia | libxslt | 0, 1.1.29-1.2.mga5, 0 |
Timeline
- May 2, 2017 CVE Updated
- May 2, 2017 CVE Published
- Mar 17, 2026 Distribution Patch
References
- Updated libxslt packages fix security vulnerability advisory
- Updated libxslt packages fix security vulnerability issue
- Updated libxslt packages fix security vulnerability advisory
- Updated zlib packages fix broken gzip handling in UniFi advisory
- Updated zlib packages fix broken gzip handling in UniFi issue
- Updated zlib packages fix broken gzip handling in UniFi issue
- Updated zlib packages fix broken gzip handling in UniFi issue