Release date:
2026-10-05 11:27:49 UTC
Description:
- CVE-2025-7425: clear the attribute type through the live attr argument in
xmlRemoveID() instead of id->attr, which read the xmlID already freed by
xmlHashRemoveEntry()
- CVE-2022-23308: normalize the ID value in xmlRemoveID() after it is read
from the attribute instead of before, where the pointer was uninitialized
Updated packages:
-
libxml2-2.9.1-6.0.13.el7_9.6.tuxcare.els2.i686.rpm
sha:184b8c23495a5ea17e25679ea7ed75597d44a684fb566987f46c85d874319700
-
libxml2-2.9.1-6.0.13.el7_9.6.tuxcare.els2.x86_64.rpm
sha:f84a5b660a0320b65808eca16783f2da8490d9e8f074a6c3659b3777bee45fe7
-
libxml2-devel-2.9.1-6.0.13.el7_9.6.tuxcare.els2.i686.rpm
sha:6c7755d9c79c04d71bfb5f3e269c7bfeb636d1fb23210f577a9fd550fbe4c87a
-
libxml2-devel-2.9.1-6.0.13.el7_9.6.tuxcare.els2.x86_64.rpm
sha:0c88759eb8816ea42fb6e68385077480d26bc7c8a6256ee19219a779faa8a11e
-
libxml2-python-2.9.1-6.0.13.el7_9.6.tuxcare.els2.i686.rpm
sha:7cf74679c242c2488facafae5f8b65c5dd3c8109efbc61c09fcc0951714ddd21
-
libxml2-python-2.9.1-6.0.13.el7_9.6.tuxcare.els2.x86_64.rpm
sha:938ae30c4529b60abeee2d352c27194f724a03bd0b07adb2096a020e6c7bef7f
-
libxml2-static-2.9.1-6.0.13.el7_9.6.tuxcare.els2.i686.rpm
sha:318826784c640c2bcdafd5e08e9d52b169a7733bbdeb02a4ffe09646f79e1abd
-
libxml2-static-2.9.1-6.0.13.el7_9.6.tuxcare.els2.x86_64.rpm
sha:b82534555f7762da2a55b05c24dcb388f5d174ac0498d447d819d526d59b2cab
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.