CVE-2019-13118

Severity
5.3MEDIUM
EPSS
1.0%
top 22.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 1
Latest updateMay 24

Description

In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid character/length combination could be passed to xsltNumberFormatDecimal, leading to a read of uninitialized stack data.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages13 packages

Debianlibxslt< 1.1.32-2.1+3
Ubuntulibxslt< 1.1.28-2.1ubuntu0.3+2
NVDxmlsoft/libxslt1.1.33
RubyGemsnokogiri< 1.10.5
NVDapple/tvos< 12.4

Also affects: Fedora 31, Ubuntu Linux 12.04, 14.04, 16.04, 18.04, 19.04, 19.10

Patches

🔴Vulnerability Details

5
GHSA
libxslt Type Confusion vulnerability that affects Nokogiri2022-05-24
OSV
libxslt Type Confusion vulnerability that affects Nokogiri2022-05-24
OSV
libxslt vulnerabilities2019-10-22
CVEList
CVE-2019-13118: In numbers2019-07-01
OSV
CVE-2019-13118: In numbers2019-07-01

📋Vendor Advisories

11
Oracle
Oracle Oracle Java SE Risk Matrix: JavaFX (libxslt) — CVE-2019-131182020-01-15
Ubuntu
Libxslt vulnerabilities2019-10-22
Apple
CVE-2019-13118: iCloud for Windows 10.62019-07-23
Apple
CVE-2019-13118: iTunes 12.9.6 for Windows2019-07-23
Apple
CVE-2019-13118: iCloud for Windows 7.132019-07-23

💬Community

4
Bugzilla
CVE-2019-13118 mingw-libxslt: libxslt: read of uninitialized stack data due to too narrow xsl:number instruction and an invalid character [fedora-all]2019-07-10
Bugzilla
CVE-2019-13118 mingw-libxslt: libxslt: read of uninitialized stack data due to too narrow xsl:number instruction and an invalid character [epel-7]2019-07-10
Bugzilla
CVE-2019-13118 libxslt: read of uninitialized stack data due to too narrow xsl:number instruction and an invalid character2019-07-10
Bugzilla
CVE-2019-13118 libxslt: read of uninitialized stack data due to too narrow xsl:number instruction and an invalid character [fedora-all]2019-07-10
CVE-2019-13118 (MEDIUM CVSS 5.3) | In numbers.c in libxslt 1.1.33 | cvebase.io