Type Confusion in libxslt Affects Product from GNOME
CVE-2019-13118
5.3MEDIUM
What is CVE-2019-13118?
A type confusion vulnerability in the libxslt 1.1.33 library can occur when an invalid character or length combination is passed to the xsltNumberFormatDecimal function. This leads to reading uninitialized data from the stack, potentially exposing sensitive information or causing unexpected behavior in applications that utilize this library. Affected systems include various Apple products that rely on libxslt for XML transformations and styling.