Sploitus

CVE-2019-13117

No indexed exploits for CVE-2019-13117 yet

In numbers.c in libxslt 1.1.33, an xsl:number with certain format strings could lead to a uninitialized read in xsltNumberFormatInsertNumbers. This could allow an attacker to discern whether a byte on the stack contains the characters A, a, I, i, or 0, or any other character.

Xmlsoft Libxslt
= 1.1.33
CVSS 3.1
5.3 MEDIUM
EPSS
6.5% (93th percentile)
Weakness
CWE-908
NVD status
Modified
Published
2019-07-01
CVE-2019-13117 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2019-13117 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2019-13117 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.