Release date:
2026-10-05 09:15:55 UTC
Description:
- rebase onto Amazon Linux 2 2.9.1-6.amzn2.5.27, which fixes CVE-2026-74860 and
CVE-2026-86137
- take the vendor's dict.c, valid.c, xinclude.c, xmlIO.c, xmlregexp.c and
xpointer.c patches in place of ours, and carry what they omit: the QName
length limit in xmlDictQLookup, the size_t length checks in
xmlOutputBufferWrite and xmlOutputBufferWriteEscape, and the saturating
xmlStrlen
- keep the TuxCare parser.c, nanohttp.c, xmlreader.c and xpath.c fixes
Updated packages:
-
libxml2-2.9.1-6.amzn2.5.27.tuxcare.els1.aarch64.rpm
sha:0a2957285533ff26828d1a4b1dcf12313b7010fe1e4f62bd2a4762a86fd0001a
-
libxml2-2.9.1-6.amzn2.5.27.tuxcare.els1.i686.rpm
sha:7d19ce9b0f621e2cc8ccbc74beefdde9123f5933a3f90851a3dbc8b6df8ad445
-
libxml2-2.9.1-6.amzn2.5.27.tuxcare.els1.x86_64.rpm
sha:8bb0b760be65c64cdfcf1a3878325a74d894931aa7c885483b05aab2228d98cd
-
libxml2-devel-2.9.1-6.amzn2.5.27.tuxcare.els1.aarch64.rpm
sha:076a0a59d07ed551ef586e829732a7669aee3b9712d513912b7fe3aa55b58790
-
libxml2-devel-2.9.1-6.amzn2.5.27.tuxcare.els1.i686.rpm
sha:551106dc2ba46612488f175fef75f9b0adddb3bece135a6ede37827f5849461e
-
libxml2-devel-2.9.1-6.amzn2.5.27.tuxcare.els1.x86_64.rpm
sha:54501a4f1f4584648be17b8fb72d528726848d69b74d293aca0abc0f142ff453
-
libxml2-python-2.9.1-6.amzn2.5.27.tuxcare.els1.aarch64.rpm
sha:b82f76043f7c5c18d99fe006b15e77a0c310f3109deaad67be157f5711482b48
-
libxml2-python-2.9.1-6.amzn2.5.27.tuxcare.els1.i686.rpm
sha:ceb99dad0b0496ed643c15721971e5153d74b48f46e847ea615a28cc3c6d8277
-
libxml2-python-2.9.1-6.amzn2.5.27.tuxcare.els1.x86_64.rpm
sha:e6f0e425271deafb4cb8a50ae829c79fb0ac3d237da1b1b8d4ac1fe2fd503330
-
libxml2-static-2.9.1-6.amzn2.5.27.tuxcare.els1.aarch64.rpm
sha:2113a21b6fb43fa98db819ef4f30a02d8c76bb7d5de858fddb948926fe5cb9f1
-
libxml2-static-2.9.1-6.amzn2.5.27.tuxcare.els1.i686.rpm
sha:f20af693c0991aa18c73bd49499e7c5633f5c35a862f39a5d08ccfe07e93c258
-
libxml2-static-2.9.1-6.amzn2.5.27.tuxcare.els1.x86_64.rpm
sha:980fa473c2b181a16bf4f37ca1f57dd4dc593a7033eb34c17bc40982b988cc15
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.