[CLSA-2026:1775731413] libxml2: Fix of 8 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-04-09 10:43:37 UTC
Description:
- CVE-2023-45322: fix use-after-free in xmlStaticCopyNodeList when copying DTDs - CVE-2024-34459: fix buffer over-read in xmlHTMLPrintFileContext in xmllint - CVE-2025-6170: fix potential buffer overflows in xmllint interactive shell - CVE-2025-8732: fix stack overflow from self-referencing SGML CATALOG entries - CVE-2026-0989: add RelaxNG include recursion limit - CVE-2026-0990: prevent infinite recursion in xmlCatalogListXMLResolveURI - CVE-2026-0992: ignore repeated nextCatalog entries in XML catalog parsing - CVE-2026-1757: fix memory leak in xmllint interactive shell
Updated packages:
  • libxml2-2.9.13-12.el9_6.tuxcare.els3.i686.rpm
    sha:1032726d9e7108cfea71af7db6e8891f1de842e761553c5ce9792054b8fd3e36
  • libxml2-2.9.13-12.el9_6.tuxcare.els3.x86_64.rpm
    sha:66f73c701d85adad9bd240a504ee37af475f7ba48b15eb21823b528f3de6bad9
  • libxml2-devel-2.9.13-12.el9_6.tuxcare.els3.i686.rpm
    sha:9a45b7a5cadb51157f401903ba43876ea4b90d22c2973c360583ab32706ac9bd
  • libxml2-devel-2.9.13-12.el9_6.tuxcare.els3.x86_64.rpm
    sha:844b659c1f05a8424254903283d4eba77d7abab86331f6638fdd433cb00454fd
  • libxml2-static-2.9.13-12.el9_6.tuxcare.els3.x86_64.rpm
    sha:e0ff529d20440e2f58193052425a15afde8a60939bb2bde2470a5dd33b7d3b71
  • python3-libxml2-2.9.13-12.el9_6.tuxcare.els3.x86_64.rpm
    sha:7de707dd5fccfa2d499198268c3a83eea63ed32709752a39fad76909359600d6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.