It was reported [1] that libxlst would crash with a segfault due to a read near NULL occurring in xsltDocumentFunction() when an uninitialized variable is used as a parameter to the document() function. This has been fixed in version 1.1.28 [2]. [1] https://bugzilla.gnome.org/show_bug.cgi?id=685330 [2] https://git.gnome.org/browse/libxslt/commit/?id=6c99c519d97e5fcbec7a9537d190efb442e4e833
CVE-2012-6139 has been assigned http://www.openwall.com/lists/oss-security/2013/03/25/10
This issue was merged with bug #927386 under one CVE. *** This bug has been marked as a duplicate of bug 927386 ***