Memory Management Vulnerability in libxslt by Red Hat
CVE-2025-7425

7.8HIGH

What is CVE-2025-7425?

A memory management flaw in libxslt allows improper handling of the atype attribute flags, leading to potential memory corruption. When the key() function in XSLT processes certain tree fragments, it fails to clean up ID attributes properly, which may result in the system accessing freed memory. This could cause application crashes or may be exploited by attackers to trigger heap corruption, posing significant risks to application stability and security.

Affected Version(s)

Red Hat Discovery 2 sha256:c517869dacaf4d3650310d4a52e83706e0b311d6ebb4a9b37b1c7acff5c142ec

Red Hat Enterprise Linux 7 Extended Lifecycle Support 0:2.9.1-6.el7_9.12

Red Hat Enterprise Linux 8 0:2.9.7-21.el8_10.2

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Red Hat would like to thank Sergei Glazunov (Google Project Zero) for reporting this issue.
.
CVE-2025-7425 : Memory Management Vulnerability in libxslt by Red Hat