Description

A flaw was found in the exsltFuncResultComp() function of libxslt, which handles EXSLT <func:result> elements during stylesheet parsing. Due to improper type handling, the function may treat an XML document node as a regular XML element node, resulting in a type confusion. This can cause unexpected memory reads and potential crashes. While difficult to exploit, the flaw could lead to application instability or denial of service.

INFO

Published Date :

2025-10-14T06:02:35.519Z

Last Modified :

2026-04-27T20:05:08.635Z

Source :

redhat
AFFECTED PRODUCTS

The following products are affected by CVE-2025-11731 vulnerability.

Vendors Products
Redhat
  • Enterprise Linux
  • Hummingbird
  • Openshift

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact