CVE-2025-24855
CVE Information
CVE ID
CVE-2025-24855
Severity
HIGH
CVSS 7.8
Publish Date
2025-03-14
Description
numbers.c in libxslt before 1.1.43 has a use-after-free because, in nested XPath evaluations, an XPath context node can be modified but never restored. This is related to xsltNumberFormatGetValue, xsltEvalXPathPredicate, xsltEvalXPathStringNs, and xsltComputeSortResultInternal.
Collection Date
2026-01-13
Impact Summary
Affected Hosts
1
Related Incidents
0
Related Alerts
0
Affected Hosts (1)
| Hostname | OS Type | Severity | Total CVEs |
|---|---|---|---|
| DESKTOP-FNUMV3U | WINDOWS | CRITICAL | 195 |