CNNVD-202507-1491 Information

CNNVD ID

CNNVD-202507-1491

CVE-2025-7425

  • CNNVD Published: 2025-07-10

Description (Chinese)

Libxslt是Libxslt开源的一个为 GNOME 项目开发的 XSLT C 库。 Libxslt存在安全漏洞,该漏洞源于属性类型atype和标志修改不当,可能导致内存管理损坏和堆损坏。

Description (English)

Libxslt is an XSLT C library developed for the GNOME project at the Libxslt Open Source. Libxslt had a security loophole, which stemmed from attribute type atype and inappropriate marking modifications, which could result in memory management damage and stack damage.

Hazard Level

Medium

Vulnerability Type

资源管理错误

Affected Vendor

Libxslt

Published

2025-07-10

Last Modified

2026-02-24

References

https://gitlab.gnome.org/GNOME/libxslt/-/issues/140 https://bugzilla.redhat.com/show_bug.cgi?id=2379274 https://access.redhat.com/security/cve/CVE-2025-7425 https://access.redhat.com/errata/RHSA-2025:14819 https://access.redhat.com/errata/RHSA-2025:14396 https://access.redhat.com/errata/RHSA-2025:14059 https://access.redhat.com/errata/RHSA-2025:13622 https://access.redhat.com/errata/RHSA-2025:13464 https://access.redhat.com/errata/RHSA-2025:13335 https://access.redhat.com/errata/RHSA-2025:13314 https://access.redhat.com/errata/RHSA-2025:13313 https://access.redhat.com/errata/RHSA-2025:13312 https://access.redhat.com/errata/RHSA-2025:13311 https://access.redhat.com/errata/RHSA-2025:13310 https://access.redhat.com/errata/RHSA-2025:13309 https://access.redhat.com/errata/RHSA-2025:13308 https://access.redhat.com/errata/RHSA-2025:13267 https://access.redhat.com/errata/RHSA-2025:12450 https://access.redhat.com/errata/RHSA-2025:12447 https://www.oracle.com/security-alerts/cpuoct2025.html https://www.oracle.com/security-alerts/cpujan2026.html https://nvd.nist.gov/vuln/detail/CVE-2025-7425

Share on: