[CLSA-2024:1708427636] Fix CVE(s): CVE-2024-25062
Type:
security
Severity:
Important
Release date:
2024-02-20 11:13:59 UTC
Description:
* SECURITY UPDATE: Use-after-free in xmlValidatePopElement() - debian/patches/CVE-2024-25062.patch: Fix use-after-free if XML Reader when used with DTD validation and XInclude expansion - CVE-2024-25062
Updated packages:
  • libxml2_2.9.3+dfsg1-1ubuntu0.7+tuxcare.els7_amd64.deb
    sha:d61836cb6a46d975bdbef230b5154af67940c2ea
  • libxml2-dev_2.9.3+dfsg1-1ubuntu0.7+tuxcare.els7_amd64.deb
    sha:1ef17f13ee55910dedfe9598323017290a4f7d84
  • libxml2-doc_2.9.3+dfsg1-1ubuntu0.7+tuxcare.els7_all.deb
    sha:bff6880402ac2dd1acd9b3fb41045623fa4c2d07
  • libxml2-utils_2.9.3+dfsg1-1ubuntu0.7+tuxcare.els7_amd64.deb
    sha:588e49d2eb099b314899551da730ded66b8c1253
  • python-libxml2_2.9.3+dfsg1-1ubuntu0.7+tuxcare.els7_amd64.deb
    sha:e954d23f7a355d91315fafbbe36542494d1df075
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.