CVE-2024-55549
HIGH | Platform: iOS | Changelog
CVE Details
Description
xsltGetInheritedNsList in libxslt before 1.1.43 has a use-after-free issue related to exclusion of result prefixes.
CVSS 3.1 Score
| Metric | Value |
|---|---|
| Base Score | 7.8 (HIGH) |
| Vector | CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:H |
Weakness
References
- Apple Security Advisory
- NVD Entry
- https://gitlab.gnome.org/GNOME/libxslt/-/issues/127 (Exploit, Issue Tracking, Vendor Advisory)
- https://lists.debian.org/debian-lts-announce/2025/03/msg00015.html