Sploitus

CVE-2019-18197

No indexed exploits for CVE-2019-18197 yet

In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed.

Xmlsoft Libxslt
= 1.1.33
Fix
Available
CVSS 3.1
7.5 HIGH
EPSS
4.5% (91th percentile)
Weakness
CWE-908, CWE-416
NVD status
Modified
Published
2019-10-18
CVE-2019-18197 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2019-18197 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2019-18197 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.