Description
numbers.c in libxslt before 1.1.43 has a use-after-free because, in nested XPath evaluations, an XPath context node can be modified but never restored. This is related to xsltNumberFormatGetValue, xsltEvalXPathPredicate, xsltEvalXPathStringNs, and xsltComputeSortResultInternal.
Mitigation
Minimal update. May introduce new vulnerabilities or breaking changes.
|
 alpine v3.18 | | =1.1.24-r0 || =1.1.24-r1 || =1.1.26-r0 || =1.1.26-r1 || =1.1.26-r2 || =1.1.26-r3 || =1.1.26-r4 || =1.1.26-r5 || =1.1.26-r6 || =1.1.26-r7 || =1.1.26-r8 || =1.1.26-r9 || =1.1.27-r0 || =1.1.27-r1 || =1.1.28-r0 || =1.1.28-r1 || =1.1.28-r2 || =1.1.29-r0 || =1.1.29-r1 || =1.1.29-r2 || =1.1.29-r3 || =1.1.30-r0 || =1.1.31-r0 || =1.1.32-r0 || =1.1.33-r0 || =1.1.33-r1 || =1.1.34-r0 || =1.1.34-r1 || =1.1.35-r0 || =1.1.36-r0 || =1.1.37-r0 || =1.1.37-r1 || =1.1.37-r2 || =1.1.37-r3 || =1.1.37-r4 || =1.1.38-r0 || >=0 <1.1.38-r1 | 1.1.38-r1 |
 alpine v3.19 | | =1.1.24-r0 || =1.1.24-r1 || =1.1.26-r0 || =1.1.26-r1 || =1.1.26-r2 || =1.1.26-r3 || =1.1.26-r4 || =1.1.26-r5 || =1.1.26-r6 || =1.1.26-r7 || =1.1.26-r8 || =1.1.26-r9 || =1.1.27-r0 || =1.1.27-r1 || =1.1.28-r0 || =1.1.28-r1 || =1.1.28-r2 || =1.1.29-r0 || =1.1.29-r1 || =1.1.29-r2 || =1.1.29-r3 || =1.1.30-r0 || =1.1.31-r0 || =1.1.32-r0 || =1.1.33-r0 || =1.1.33-r1 || =1.1.34-r0 || =1.1.34-r1 || =1.1.35-r0 || =1.1.36-r0 || =1.1.37-r0 || =1.1.37-r1 || =1.1.37-r2 || =1.1.37-r3 || =1.1.37-r4 || =1.1.38-r0 || =1.1.38-r1 || =1.1.39-r0 || >=0 <1.1.39-r1 | 1.1.39-r1 |
 alpine v3.20 | | =1.1.24-r0 || =1.1.24-r1 || =1.1.26-r0 || =1.1.26-r1 || =1.1.26-r2 || =1.1.26-r3 || =1.1.26-r4 || =1.1.26-r5 || =1.1.26-r6 || =1.1.26-r7 || =1.1.26-r8 || =1.1.26-r9 || =1.1.27-r0 || =1.1.27-r1 || =1.1.28-r0 || =1.1.28-r1 || =1.1.28-r2 || =1.1.29-r0 || =1.1.29-r1 || =1.1.29-r2 || =1.1.29-r3 || =1.1.30-r0 || =1.1.31-r0 || =1.1.32-r0 || =1.1.33-r0 || =1.1.33-r1 || =1.1.34-r0 || =1.1.34-r1 || =1.1.35-r0 || =1.1.36-r0 || =1.1.37-r0 || =1.1.37-r1 || =1.1.37-r2 || =1.1.37-r3 || =1.1.37-r4 || =1.1.38-r0 || =1.1.38-r1 || =1.1.39-r0 || =1.1.39-r1 || >=0 <1.1.39-r2 | 1.1.39-r2 |
 alpine v3.21 | | =1.1.24-r0 || =1.1.24-r1 || =1.1.26-r0 || =1.1.26-r1 || =1.1.26-r2 || =1.1.26-r3 || =1.1.26-r4 || =1.1.26-r5 || =1.1.26-r6 || =1.1.26-r7 || =1.1.26-r8 || =1.1.26-r9 || =1.1.27-r0 || =1.1.27-r1 || =1.1.28-r0 || =1.1.28-r1 || =1.1.28-r2 || =1.1.29-r0 || =1.1.29-r1 || =1.1.29-r2 || =1.1.29-r3 || =1.1.30-r0 || =1.1.31-r0 || =1.1.32-r0 || =1.1.33-r0 || =1.1.33-r1 || =1.1.34-r0 || =1.1.34-r1 || =1.1.35-r0 || =1.1.36-r0 || =1.1.37-r0 || =1.1.37-r1 || =1.1.37-r2 || =1.1.37-r3 || =1.1.37-r4 || =1.1.38-r0 || =1.1.38-r1 || =1.1.39-r0 || =1.1.39-r1 || =1.1.42-r0 || =1.1.42-r1 || >=0 <1.1.42-r2 | 1.1.42-r2 |
 alpine v3.22 | | =1.1.24-r0 || =1.1.24-r1 || =1.1.26-r0 || =1.1.26-r1 || =1.1.26-r2 || =1.1.26-r3 || =1.1.26-r4 || =1.1.26-r5 || =1.1.26-r6 || =1.1.26-r7 || =1.1.26-r8 || =1.1.26-r9 || =1.1.27-r0 || =1.1.27-r1 || =1.1.28-r0 || =1.1.28-r1 || =1.1.28-r2 || =1.1.29-r0 || =1.1.29-r1 || =1.1.29-r2 || =1.1.29-r3 || =1.1.30-r0 || =1.1.31-r0 || =1.1.32-r0 || =1.1.33-r0 || =1.1.33-r1 || =1.1.34-r0 || =1.1.34-r1 || =1.1.35-r0 || =1.1.36-r0 || =1.1.37-r0 || =1.1.37-r1 || =1.1.37-r2 || =1.1.37-r3 || =1.1.37-r4 || =1.1.38-r0 || =1.1.38-r1 || =1.1.39-r0 || =1.1.39-r1 || =1.1.42-r0 || =1.1.42-r1 || >=0 <1.1.43-r0 | 1.1.43-r0 |
 debian 11 | | =1.1.34-4 || =1.1.34-4+deb11u1 || >=0 <1.1.34-4+deb11u2 | 1.1.34-4+deb11u2 |
 debian 12 | | =1.1.35-1 || >=0 <1.1.35-1+deb12u1 | 1.1.35-1+deb12u1 |
 debian 13 | | | 1.1.35-1.2 |
 debian 14 | | | 1.1.35-1.2 |
 alpine v3.23 | | =1.1.24-r0 || =1.1.24-r1 || =1.1.26-r0 || =1.1.26-r1 || =1.1.26-r2 || =1.1.26-r3 || =1.1.26-r4 || =1.1.26-r5 || =1.1.26-r6 || =1.1.26-r7 || =1.1.26-r8 || =1.1.26-r9 || =1.1.27-r0 || =1.1.27-r1 || =1.1.28-r0 || =1.1.28-r1 || =1.1.28-r2 || =1.1.29-r0 || =1.1.29-r1 || =1.1.29-r2 || =1.1.29-r3 || =1.1.30-r0 || =1.1.31-r0 || =1.1.32-r0 || =1.1.33-r0 || =1.1.33-r1 || =1.1.34-r0 || =1.1.34-r1 || =1.1.35-r0 || =1.1.36-r0 || =1.1.37-r0 || =1.1.37-r1 || =1.1.37-r2 || =1.1.37-r3 || =1.1.37-r4 || =1.1.38-r0 || =1.1.38-r1 || =1.1.39-r0 || =1.1.39-r1 || =1.1.42-r0 || =1.1.42-r1 || >=0 <1.1.43-r0 | 1.1.43-r0 |