CVE-2019-13118

In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid character/length combination could be passed to xsltNumberFormatDecimal, leading to a read of uninitialized stack data.

medium 5.3 CVSS 3.1
Published: Jul 1, 2019
Modified: May 28, 2026
Vendor: Xmlsoft
Product: Libxslt
Versions: 1.1.33,15.1,1.8.0,31,12.04,14.04,16.04,18.04,19.04,19.10

Description

In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid character/length combination could be passed to xsltNumberFormatDecimal, leading to a read of uninitialized stack data.

References

Related CVEs