CVE-2025-7425

A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents the proper cleanup of ID attributes. As a result, the system may access freed memory, causing crashes or enabling attackers to trigger heap corruption.
References
Link Resource
https://access.redhat.com/errata/RHSA-2025:12447
https://access.redhat.com/errata/RHSA-2025:12450
https://access.redhat.com/errata/RHSA-2025:13267
https://access.redhat.com/errata/RHSA-2025:13308
https://access.redhat.com/errata/RHSA-2025:13309
https://access.redhat.com/errata/RHSA-2025:13310
https://access.redhat.com/errata/RHSA-2025:13311
https://access.redhat.com/errata/RHSA-2025:13312
https://access.redhat.com/errata/RHSA-2025:13313
https://access.redhat.com/errata/RHSA-2025:13314
https://access.redhat.com/errata/RHSA-2025:13335
https://access.redhat.com/errata/RHSA-2025:13464
https://access.redhat.com/errata/RHSA-2025:13622
https://access.redhat.com/errata/RHSA-2025:14059
https://access.redhat.com/errata/RHSA-2025:14396
https://access.redhat.com/errata/RHSA-2025:14818
https://access.redhat.com/errata/RHSA-2025:14819
https://access.redhat.com/errata/RHSA-2025:14853
https://access.redhat.com/errata/RHSA-2025:14858
https://access.redhat.com/errata/RHSA-2025:15308
https://access.redhat.com/errata/RHSA-2025:15672
https://access.redhat.com/errata/RHSA-2025:15827
https://access.redhat.com/errata/RHSA-2025:15828
https://access.redhat.com/errata/RHSA-2025:18219
https://access.redhat.com/errata/RHSA-2025:21885
https://access.redhat.com/errata/RHSA-2025:21913
https://access.redhat.com/security/cve/CVE-2025-7425
https://bugzilla.redhat.com/show_bug.cgi?id=2379274
https://gitlab.gnome.org/GNOME/libxslt/-/issues/140
http://seclists.org/fulldisclosure/2025/Aug/0
http://seclists.org/fulldisclosure/2025/Jul/30
http://seclists.org/fulldisclosure/2025/Jul/32
http://seclists.org/fulldisclosure/2025/Jul/35
http://seclists.org/fulldisclosure/2025/Jul/37
http://www.openwall.com/lists/oss-security/2025/07/11/2
https://lists.debian.org/debian-lts-announce/2025/09/msg00035.html
https://gitlab.gnome.org/GNOME/libxslt/-/issues/140
Configurations

No configuration.

History

22 Nov 2025, 03:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:21913 -

20 Nov 2025, 21:16

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:21885 -

04 Nov 2025, 22:16

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2025/07/11/2 -

03 Nov 2025, 20:19

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2025/Aug/0 -
  • () http://seclists.org/fulldisclosure/2025/Jul/30 -
  • () http://seclists.org/fulldisclosure/2025/Jul/32 -
  • () http://seclists.org/fulldisclosure/2025/Jul/35 -
  • () http://seclists.org/fulldisclosure/2025/Jul/37 -

03 Nov 2025, 19:16

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/09/msg00035.html -

16 Oct 2025, 09:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:18219 -

18 Sep 2025, 10:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:15672 -

15 Sep 2025, 18:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:15827 -

15 Sep 2025, 16:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:15828 -

11 Sep 2025, 18:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:15308 -

04 Sep 2025, 21:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:14818 -
  • () https://access.redhat.com/errata/RHSA-2025:14853 -
  • () https://access.redhat.com/errata/RHSA-2025:14858 -

02 Sep 2025, 20:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:14819 -

27 Aug 2025, 22:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:14059 -
  • () https://access.redhat.com/errata/RHSA-2025:14396 -

11 Aug 2025, 15:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:13622 -

07 Aug 2025, 16:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:13464 -

07 Aug 2025, 09:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:13308 -
  • () https://access.redhat.com/errata/RHSA-2025:13309 -
  • () https://access.redhat.com/errata/RHSA-2025:13310 -
  • () https://access.redhat.com/errata/RHSA-2025:13311 -
  • () https://access.redhat.com/errata/RHSA-2025:13312 -
  • () https://access.redhat.com/errata/RHSA-2025:13335 -

07 Aug 2025, 06:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:13313 -
  • () https://access.redhat.com/errata/RHSA-2025:13314 -

06 Aug 2025, 16:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:13267 -

31 Jul 2025, 17:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:12447 -
  • () https://access.redhat.com/errata/RHSA-2025:12450 -

15 Jul 2025, 13:24

Type Values Removed Values Added
Summary
  • (es) Se encontró una falla en libxslt donde los atributos type, atype y flags se modifican de forma que corrompe la gestión de memoria interna. Cuando las funciones XSLT, como el proceso key(), generan fragmentos de árbol, esta corrupción impide la limpieza correcta de los atributos ID. Como resultado, el sistema puede acceder a la memoria liberada, provocando fallos o permitiendo a los atacantes provocar la corrupción del montón.

10 Jul 2025, 16:15

Type Values Removed Values Added
References () https://gitlab.gnome.org/GNOME/libxslt/-/issues/140 - () https://gitlab.gnome.org/GNOME/libxslt/-/issues/140 -

10 Jul 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-10 14:15

Updated : 2025-11-22 03:15


NVD link : CVE-2025-7425

Mitre link : CVE-2025-7425

CVE.ORG link : CVE-2025-7425


JSON object : View

Products Affected

No product.

CWE
CWE-416

Use After Free