In libxslt 1.1.29 and earlier, the EXSLT math.random function was not initialized with a random seed during startup, which could cause usage of this function to produce predictable outputs.
CVSS Details
- CVSS 3.0 Base Score: 5.3
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade libxslt | May 15, 2025 | May 15, 2025 |
| Huawei Euleros 2_0_sp2 | — | Upgrade libxslt-pythonUpgrade libxslt-develUpgrade libxslt | Feb 22, 2019 | Apr 5, 2017 |
| Huawei Euleros 2_0_sp3 | — | Upgrade libxslt-develUpgrade libxsltUpgrade libxslt-python | May 30, 2019 | Apr 5, 2017 |
| Huawei Euleros 2_0_sp5 | — | Upgrade libxsltUpgrade libxslt-develUpgrade libxslt-python | May 1, 2019 | Apr 5, 2017 |
| Oracle Solaris | — | Upgrade library/python/libxsl-27 to version 1.1.33-0.175.3.36.0.19.0 on Solaris 11.3Upgrade library/libxslt to version 1.1.33-0.175.3.36.0.19.0 on Solaris 11.3Upgrade library/python/libxsl-27 to version 1.1.33-11.4.8.0.1.1.0 on Solaris 11.4Upgrade library/libxslt to version 1.1.33-11.4.8.0.1.1.0 on Solaris 11.4 | Apr 17, 2019 | Apr 5, 2017 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Nov 20, 2015 |
| Suse | — | Upgrade libxslt-devel-32bitUpgrade libxslt1-32bitUpgrade libxslt-32bitUpgrade libxslt-toolsUpgrade libxslt1Upgrade libxslt-develUpgrade libxslt-x86Upgrade libxsltUpgrade libxslt-python | May 15, 2017 | Apr 5, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub