[CLSA-2025:1758228035] Fix CVE(s): CVE-2025-7425
Type:
security
Severity:
Important
Release date:
2025-09-18 20:40:39 UTC
Description:
* SECURITY UPDATE: memory corruption in attribute type handling - debian/patches/CVE-2025-7425.patch: guard against atype corruption to ensure proper ID cleanup and prevent heap-use-after-free - CVE-2025-7425
Updated packages:
  • libxml2_2.9.10+dfsg-5ubuntu0.20.04.10+tuxcare.els4_amd64.deb
    sha:3781dea005c678b31cec6f4dc0b58c88e3b9f1be
  • libxml2-dev_2.9.10+dfsg-5ubuntu0.20.04.10+tuxcare.els4_amd64.deb
    sha:5fba3c50ca3cfd54678f7f76a785b3c8f3ccd089
  • libxml2-doc_2.9.10+dfsg-5ubuntu0.20.04.10+tuxcare.els4_all.deb
    sha:fe8cac9c8532c45d6e7c4598747afaf34066bb5b
  • libxml2-utils_2.9.10+dfsg-5ubuntu0.20.04.10+tuxcare.els4_amd64.deb
    sha:6b6b28aaac045e22311dc1a97d52e74e2650bdef
  • python-libxml2_2.9.10+dfsg-5ubuntu0.20.04.10+tuxcare.els4_amd64.deb
    sha:fd8894c5f3f760912ec1f449041f64e479270761
  • python3-libxml2_2.9.10+dfsg-5ubuntu0.20.04.10+tuxcare.els4_amd64.deb
    sha:38beeaea7f8a3dbeb74d54cc65bf48ea3175e8d6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.