Sensitive information sent insecurely In libxslt
Description
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may disclose sensitive information.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 12 | 1.1.35-1+deb12u2 | ||
debian 13 | 1.1.35-1.2+deb13u1 | ||
debian 14 | 1.1.35-2 | ||
debian 11 | 1.1.34-4+deb11u3 | ||
rpm rhel6 | - | - | |
rpm rhel7 | - | - | |
rpm rhel8 | 0:1.1.32-6.2.el8_10 | ||
rpm rhel9 | 0:1.1.34-14.el9_7.1 | ||
rpm rhel9.4 | 0:1.1.34-14.el9_4 | ||
rpm rhel9.6 | 0:1.1.34-13.el9_6.1 |
Aliases
1. 2. 3. 4. 5.