CVE-2015-7995
17.11.2015, 15:59
The xsltStylePreCompute function in preproc.c in libxslt 1.1.28 does not check if the parent node is an element, which allows attackers to cause a denial of service via a crafted XML file, related to a "type confusion" issue.Enginsight
| Vendor | Product | Version |
|---|---|---|
| apple | iphone_os | 𝑥 ≤ 9.2 |
| apple | mac_os_x | 𝑥 ≤ 10.11.2 |
| apple | tvos | 𝑥 ≤ 9.1 |
| apple | watchos | 𝑥 ≤ 2.1 |
| xmlsoft | libxslt | 𝑥 ≤ 1.1.28 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases