Record summary

CVE-2008-1767 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.

Description

Buffer overflow in pattern.c in libxslt before 1.1.24 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via an XSL style sheet file with a long XSLT "transformation match" condition that triggers a large number of steps.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBlibxslt XSL 1.1.23 - File Processing Buffer OverflowExploitDB exploitby Anthony de Almeida LopesNot analyzed1 file
ExploitDB

PoC details

References

Showing 12 of 30