Lucene search

K
cvelistMitreCVELIST:CVE-2019-13118
HistoryJul 01, 2019 - 1:27 a.m.

CVE-2019-13118

2019-07-0101:27:39
mitre
www.cve.org

6.2 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

72.8%

In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid character/length combination could be passed to xsltNumberFormatDecimal, leading to a read of uninitialized stack data.

References