UbuntuUpdates.org

Package "libxslt1-dev"

Name: libxslt1-dev

Description:

XSLT 1.0 processing library - development kit

Latest version: 1.1.39-0exp1ubuntu0.24.04.1
Release: noble (24.04)
Level: security
Repository: main
Head package: libxslt
Homepage: https://gitlab.gnome.org/GNOME/libxslt/-/wikis/home

Links


Download "libxslt1-dev"


Other versions of "libxslt1-dev" in Noble

Repository Area Version
base main 1.1.39-0exp1build1
updates main 1.1.39-0exp1ubuntu0.24.04.1

Changelog

Version: 1.1.39-0exp1ubuntu0.24.04.1 2025-03-19 16:07:19 UTC

  libxslt (1.1.39-0exp1ubuntu0.24.04.1) noble-security; urgency=medium

  * SECURITY UPDATE: use-after-free via exclusion of result prefixes
    - debian/patches/CVE-2024-55549.patch: store string in stylesheet's
      dict to avoid use after free in libxslt/xslt.c.
    - CVE-2024-55549

 -- Marc Deslauriers <email address hidden> Tue, 18 Mar 2025 10:37:57 -0400

CVE-2024-55549 xsltGetInheritedNsList in libxslt before 1.1.43 has a use-after-free issue related to exclusion of result prefixes.



About   -   Send Feedback to @ubuntu_updates