Type Confusion Vulnerability in libxslt for Red Hat Products
CVE-2025-11731
Key Information:
- Vendor
- CVE Published:
- 14 October 2025
What is CVE-2025-11731?
A flaw exists in the exsltFuncResultComp() function of libxslt, responsible for processing EXSLT func:result elements during the parsing of stylesheets. The improper handling of types can lead to the misinterpretation of an XML document node as a standard XML element node. This type confusion could result in unexpected memory reads, potentially causing application instability, crashes, or denial of service. While the exploitation of this flaw is challenging, its implications could severely impact applications relying on libxslt for XML processing.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
