A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents the proper cleanup of ID attributes. As a result, the system may access freed memory, causing crashes or enabling attackers to trigger heap corruption.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Adoptopenjdk | adoptopenjdk-upgrade-latest | Feb 24, 2026 | Feb 24, 2026 | |
| Alma_linux | alma-upgrade-libxml2alma-upgrade-libxml2-develalma-upgrade-python3-libxml2 | Aug 4, 2025 | Jul 31, 2025 | |
| Amazon Linux Ami 2 | amazon-linux-ami-2-upgrade-libxml2amazon-linux-ami-2-upgrade-libxml2-debuginfoamazon-linux-ami-2-upgrade-libxml2-develamazon-linux-ami-2-upgrade-libxml2-pythonamazon-linux-ami-2-upgrade-libxml2-static | May 20, 2026 | May 20, 2026 | |
| Amazon_linux_2023 | amazon-linux-2023-upgrade-libxml2amazon-linux-2023-upgrade-libxml2-debuginfoamazon-linux-2023-upgrade-libxml2-debugsourceamazon-linux-2023-upgrade-libxml2-develamazon-linux-2023-upgrade-libxml2-staticamazon-linux-2023-upgrade-python3-libxml2amazon-linux-2023-upgrade-python3-libxml2-debuginfo | Sep 9, 2025 | Jul 10, 2025 | |
| Apple Osx Libxml2 | apple-osx-upgrade-latest | Aug 8, 2025 | Aug 8, 2025 | |
| Apple Safari | apple-safari-upgrade-18_6apple-safari-windows-uninstall | Jul 31, 2025 | Jul 31, 2025 | |
| Azul Zulu | azul-zulu-jdk8azul-zulu-jdk11azul-zulu-jdk17azul-zulu-jdk21azul-zulu-jdk25 | Feb 25, 2026 | Jul 10, 2025 | |
| Debian | no-fix-debian-deb-package | Jul 14, 2025 | Jul 10, 2025 | |
| Eclipseadoptium | eclipseadoptium-upgrade-latest | Jun 26, 2026 | Jul 10, 2025 | |
| Freebsd | freebsd-upgrade-package-libxsltfreebsd-upgrade-package-linux-c7-libxsltfreebsd-upgrade-package-linux-rl9-libxslt | Jul 13, 2025 | Jul 12, 2025 | |
| Jre Vuln | jre-upgrade-latest | Feb 3, 2026 | Jul 10, 2025 | |
| Nutanix Ahv | nutanix-ahv-upgrade-latest | Jun 5, 2026 | Oct 10, 2025 | |
| Oracle_linux | — | oracle-linux-upgrade-libxml2oracle-linux-upgrade-libxml2-develoracle-linux-upgrade-libxml2-pythonoracle-linux-upgrade-libxml2-staticoracle-linux-upgrade-python3-libxml2 | Aug 1, 2025 | Jul 10, 2025 |
| Redhat_linux | no-fix-redhat-rpm-packageredhat-upgrade-libxml2redhat-upgrade-libxml2-debuginforedhat-upgrade-libxml2-debugsourceredhat-upgrade-libxml2-develredhat-upgrade-libxml2-pythonredhat-upgrade-libxml2-staticredhat-upgrade-python3-libxml2redhat-upgrade-python3-libxml2-debuginfo | Jul 11, 2025 | Jul 10, 2025 | |
| Rocky_linux | rocky-upgrade-libxml2rocky-upgrade-libxml2-debuginforocky-upgrade-libxml2-debugsourcerocky-upgrade-libxml2-develrocky-upgrade-python3-libxml2rocky-upgrade-python3-libxml2-debuginfo | Feb 5, 2026 | Oct 4, 2025 | |
| Suse | — | suse-upgrade-libxml2-2suse-upgrade-libxml2-2-32bitsuse-upgrade-libxml2-develsuse-upgrade-libxml2-devel-32bitsuse-upgrade-libxml2-docsuse-upgrade-libxml2-toolssuse-upgrade-python-libxml2suse-upgrade-python3-libxml2suse-upgrade-python3-libxml2-pythonsuse-upgrade-python311-libxml2suse-upgrade-python313-libxml2 | Aug 14, 2025 | Aug 1, 2025 |
| Ubuntu | ubuntu-pro-upgrade-libxml2ubuntu-pro-upgrade-python-libxml2ubuntu-pro-upgrade-python3-libxml2ubuntu-upgrade-libxml2ubuntu-upgrade-python3-libxml2 | Nov 4, 2025 | Oct 30, 2025 | |
| Vmware Photon_os | vmware-photon_os_update_tdnf | Oct 10, 2025 | Jul 10, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub