OSV-2020-1078

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libxslt/OSV-2020-1078.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2020-1078
Published
2020-07-22T21:49:45.671780Z
Modified
2022-04-13T03:04:33.758281Z
Summary
Heap-buffer-overflow in xmlXPathCompileExpr
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=18385

Crash type: Heap-buffer-overflow READ 4
Crash state:
xmlXPathCompileExpr
xmlXPathCtxtCompile
xsltFuzzXPath
References

Affected packages

OSS-Fuzz / libxslt

Package

Name
libxslt
Purl
pkg:generic/libxslt

Affected ranges

Type
GIT
Repo
https://gitlab.gnome.org/GNOME/libxslt.git
Events

Ecosystem specific

{
    "severity": "MEDIUM",
    "introduced_range": "unknown:7f56378a73af8a61da78b8091f0e317316cee300",
    "fixed_range": "6d4a773a4bd06cbfe3c0ca68728d0099777e8df6:9d4bfeecbdf28f3980b23fa8f2504bdf54f04486"
}