CVE-2025-10911 — Expired Pointer Dereference in Libxslt
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 96.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 25
Description
A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6
Affected Packages7 packages
🔴Vulnerability Details
2OSV▶
CVE-2025-10911: A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash↗2025-09-25
GHSA▶
GHSA-g23f-vwrr-7m5p: A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash↗2025-09-25