libxml2-2.9.7-21.el8_10.8
エラータID: AXSA:2026-1887:09
The libxml2 library is a development toolbox providing the implementation of various XML standards.
Security Fix(es):
* libxml2: mingw-libxml2: libxml2: Denial of Service via crafted XML input due to use-after-free (CVE-2026-6653)
Bug Fix(es) and Enhancement(s):
* libxml2: CVE-2025-9714 fix (RHEL-119279) backported wrong upstream commit ? dyn:map recursion still crashes (JIRA:RHEL-249282)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2025-9714
Uncontrolled recursion in XPath evaluation in libxml2 up to and including version 2.9.14 allows a local attacker to cause a stack overflow via crafted expressions. XPath processing functions `xmlXPathRunEval`, `xmlXPathCtxtCompile`, and `xmlXPathEvalExpr` were resetting recursion depth to zero before making potentially recursive calls. When such functions were called recursively this could allow for uncontrolled recursion and lead to a stack overflow. These functions now preserve recursion depth across recursive calls, allowing recursion depth to be controlled.
CVE-2026-6653
Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2.9.11 to 2.11.0 allows a remote attacker to cause a denial-of-service via maliciously crafted XML input with improper entity resolution handling.
Update packages.
Uncontrolled recursion in XPath evaluation in libxml2 up to and including version 2.9.14 allows a local attacker to cause a stack overflow via crafted expressions. XPath processing functions `xmlXPathRunEval`, `xmlXPathCtxtCompile`, and `xmlXPathEvalExpr` were resetting recursion depth to zero before making potentially recursive calls. When such functions were called recursively this could allow for uncontrolled recursion and lead to a stack overflow. These functions now preserve recursion depth across recursive calls, allowing recursion depth to be controlled.
Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2.9.11 to 2.11.0 allows a remote attacker to cause a denial-of-service via maliciously crafted XML input with improper entity resolution handling.
N/A
SRPMS
- libxml2-2.9.7-21.el8_10.8.src.rpm
MD5: d76a08b2015631fb40e1ebd0abd33116
SHA-256: 2434ffdf938862abe6b161d3e8723f6e2bcbfbb854157a929eeb964599f0f25e
Size: 5.26 MB
Asianux Server 8 for x86_64
- libxml2-2.9.7-21.el8_10.8.i686.rpm
MD5: f737e1fcd03d0f0004a057d5c27fe633
SHA-256: beca0d2c605010843a640257b842639e068c3725f56116be252d2201b16f6843
Size: 742.94 kB - libxml2-2.9.7-21.el8_10.8.x86_64.rpm
MD5: 8553e0f179088ac1f2ef63f1da4ce915
SHA-256: 4dc9040f58a344d6867dc4900181a23fd2e5973fc03fd1942f501bcaa2502510
Size: 697.72 kB - libxml2-devel-2.9.7-21.el8_10.8.i686.rpm
MD5: fcd21f19c8e338c5303a9309a20cd797
SHA-256: d6a6f296b04a02912258e138349b29b9c9bfddc1ace0b5e4cb106b6a908b1dc4
Size: 1.04 MB - libxml2-devel-2.9.7-21.el8_10.8.x86_64.rpm
MD5: d9d664c825f75dbd98bb79c82d8d4d92
SHA-256: c225c9afbe1b7633a22672a0b1a4d66904083da7a2a631fc8311b40f113592ac
Size: 1.04 MB - python3-libxml2-2.9.7-21.el8_10.8.x86_64.rpm
MD5: 688f83f13760f149ba9a8072a1c17522
SHA-256: 8af789bebfbbe0c2c7f52bb505606015cda7b86888f61e418447e9ed5d4cb04b
Size: 237.82 kB