CVE-2025-7425
Red Hat Security Advisory: updated web-terminal/tooling container image
Description
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents the proper cleanup of ID attributes. As a result, the system may access freed memory, causing crashes or enabling attackers to trigger heap corruption.
Metrics
Weakness classes (CWE)
CWE-416Variant
Use After Free
The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
cwe.mitre.org →
Reanalysis & status changes
Chronological NVD audit events for this CVE — reanalyses, CVSS updates, CPE diffs.
- CVE Modified2026-09-08 16:17 UTC· secalert@redhat.com
- Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2025/7xxx/CVE-2025-7425.json">CVE-2025-7425</a>
- CVE Modified2026-09-07 20:16 UTC· secalert@redhat.com
- Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2025/7xxx/CVE-2025-7425.json">CVE-2025-7425</a>
- CVE Modified2026-09-06 04:18 UTC· secalert@redhat.com
- Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2025/7xxx/CVE-2025-7425.json">CVE-2025-7425</a>
- CVE Modified2026-09-05 16:17 UTC· secalert@redhat.com
- Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2025/7xxx/CVE-2025-7425.json">CVE-2025-7425</a>
- CVE Modified2026-08-31 17:17 UTC· secalert@redhat.com
- Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2025/7xxx/CVE-2025-7425.json">CVE-2025-7425</a>
- Reference: https://access.redhat.com/errata/RHBA-2025:12345
- Reference: https://access.redhat.com/errata/RHSA-2025:12447
- Reference: https://access.redhat.com/errata/RHSA-2025:12450
Affected operating systems
linux
debian / debian_linux11.0
linux
redhat / enterprise_linux10.0
linux
redhat / enterprise_linux6.0
linux
redhat / enterprise_linux7.0
linux
redhat / enterprise_linux8.0
linux
redhat / enterprise_linux9.0
Affected products
Products and version ranges extracted from the vendor/CERT advisory. A range like „<4.14.6“ implies the update recommendation „upgrade to 4.14.6 or later“.
bitnami
git
bitnami
java-min1.9.0
bitnami
sqlite
go
golang.org/x/net
go
stdlib1.22.0-0
libarchive
libarchive3.8.0
Oracle
Fusion Middleware12.2.1.4.0
Oracle
Fusion Middleware14.1.1.0.0
Oracle
Fusion Middleware14.1.2.0.0
Oracle
Fusion Middleware14.1.2.1.0
Oracle
Fusion Middleware15.1.1.0.0
Oracle
Fusion Middleware8.5.7
Oracle
Fusion Middleware8.5.8
redhat
openshift_container_platform
References & sources
- https://access.redhat.com/errata/RHSA-2025:14557vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15099vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15100vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15101vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15102vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15103vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15104vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15105vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15106vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15107vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15709vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15827vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:15828vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:16524vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:17181vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:18219vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:21885vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941vdb-entryx_refsource_REDHAT
- https://bugzilla.redhat.com/show_bug.cgi?id=2388220issue-trackingx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2025:10630vendor-advisoryx_refsource_REDHAT
Linked CVEs
- CVE-2025-8941
A flaw was found in linux-pam.
highCVSSv3 7.8 - CVE-2025-6965
A memory corruption flaw was found in SQLite.
high - CVE-2025-6020
A flaw was found in linux-pam.
highCVSSv3 7.8 - CVE-2025-5914
A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function.
highCVSSv3 7.8 - CVE-2025-49796
A vulnerability was found in libxml2.
criticalCVSSv3 9.1 - CVE-2025-49794
A use-after-free vulnerability was found in libxml2.
criticalCVSSv3 9.1 - CVE-2025-48385
A bundled uri handling flaw was found in Git.
high - CVE-2025-48384Actively exploited
A line-end handling flaw was found in Git.
criticalCVSSv3 8.1 - CVE-2023-45288
A vulnerability was discovered with the implementation of the HTTP/2 protocol in the Go programming language.
—