VDB

MAGEIA-2017-125

MAGEIA-2017-125 PUBLISHED

Holger Fuhrmannek discovered an integer overflow in the xsltAddTextString() function in Libxslt. An attacker could use this to craft a malicious document that, when opened, could cause a denial of service (application crash) or possible execute arbitrary code (CVE-2017-5029).

Affected Products

VendorProductVersions
Mageiazlib0, 1.2.11-4.1.mga6
Mageialibxslt0, 1.1.29-1.2.mga5, 0

Timeline

  • May 2, 2017 CVE Updated
  • May 2, 2017 CVE Published
  • Mar 17, 2026 Distribution Patch
Open in Interactive Console →
$ Console Community · 100/wk Open console ›