CVE-2025-7424: Libxslt: type confusion in xmlnode.psvi between stylesheet and source nodes
A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7424?
CVE-2025-7424 has been classified as a critical vulnerability due to the potential for application crashes and memory corruption.
How do I fix CVE-2025-7424?
To mitigate CVE-2025-7424, update the libxslt library to the latest version provided by the vendor.
What are the potential impacts of CVE-2025-7424?
CVE-2025-7424 can lead to application crashes, memory corruption, and potentially expose the system to further attacks.
Which software is affected by CVE-2025-7424?
CVE-2025-7424 specifically affects the GNOME libxslt library.
What type of attack can exploit CVE-2025-7424?
CVE-2025-7424 can be exploited through crafted XML transformations, potentially leading to arbitrary code execution.