libxslt in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
CVSS Details
- CVSS 3.1 Base Score: 8.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Libxslt | — | Upgrade macOS to the latest version | Nov 11, 2016 | Sep 25, 2016 |
| Debian | — | Upgrade libxslt | Nov 9, 2016 | Sep 25, 2016 |
| Freebsd | — | Upgrade gitlab | Sep 14, 2017 | Sep 14, 2017 |
| Gentoo Linux | — | Upgrade dev-libs/libxslt. | Apr 5, 2018 | Sep 25, 2016 |
| Huawei Euleros 2_0_sp2 | — | Upgrade libxslt-develUpgrade libxslt-pythonUpgrade libxslt | Feb 22, 2021 | Sep 25, 2016 |
| Huawei Euleros 2_0_sp3 | — | Upgrade libxsltUpgrade libxslt-develUpgrade libxslt-python | Jan 20, 2021 | Sep 25, 2016 |
| Huawei Euleros 2_0_sp5 | — | Upgrade libxsltUpgrade libxslt-pythonUpgrade libxslt-devel | Feb 3, 2021 | Sep 25, 2016 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Oct 12, 2016 |
| Suse | — | Upgrade libxslt1Upgrade libxslt-toolsUpgrade libxslt-32bitUpgrade libxslt-pythonUpgrade libxslt1-32bitUpgrade libxslt-x86Upgrade libxslt-devel-32bitUpgrade libxsltUpgrade ruby2.5-rubygem-nokogiriUpgrade libxslt-devel | May 15, 2017 | Sep 25, 2016 |
| Ubuntu | — | Upgrade libxslt1.1 | May 2, 2017 | Sep 25, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub