Security Advisory

CVE-2019-18197

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-10-18 20:07:17
Last updated 2026-05-28 18:27:59
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.