CVE-2025-10911: Libxslt: use-after-free with key data stored cross-rvt
A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash.
Other sources
Libxslt: use-after-free with key data stored cross-rvt
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10911?
CVE-2025-10911 is considered a high-severity vulnerability due to its potential to cause application crashes.
How do I fix CVE-2025-10911?
To fix CVE-2025-10911, update to the latest version of libxslt provided by your distribution that addresses this vulnerability.
What impact does CVE-2025-10911 have on my application?
CVE-2025-10911 can lead to dereferencing expired pointers, resulting in crashes and potential data loss in applications using vulnerable versions of libxslt.
Is my software affected by CVE-2025-10911?
If you are using libxslt from GNOME, you may be affected by CVE-2025-10911, especially if you are not running an updated version.
How can I determine if I am vulnerable to CVE-2025-10911?
You can determine your vulnerability to CVE-2025-10911 by checking your version of libxslt against the latest security advisories from your vendor.