CVE-2015-7995
Publication date 17 November 2015
Last updated 24 July 2024
Ubuntu priority
The xsltStylePreCompute function in preproc.c in libxslt 1.1.28 does not check if the parent node is an element, which allows attackers to cause a denial of service via a crafted XML file, related to a "type confusion" issue.
Status
Package | Ubuntu Release | Status |
---|---|---|
libxslt | ||
16.04 LTS xenial |
Not affected
|
|
14.04 LTS trusty |
Fixed 1.1.28-2ubuntu0.1
|
|
Notes
References
Related Ubuntu Security Notices (USN)
- USN-3271-1
- Libxslt vulnerabilities
- 28 April 2017