VYPR

rpm package

almalinux/libxml2-static

pkg:rpm/almalinux/libxml2-static

Vulnerabilities (15)

  • CVE-2026-74860HigSep 8, 2026
    affected < 2.12.5-10.el10_2.4fixed 2.12.5-10.el10_2.4

    A flaw was found in libxml2 with Python bindings enabled. A remote attacker could exploit this vulnerability by providing a specially crafted XML document containing a Document Type Definition (DTD) with enumerated attribute values. This triggers a double-free error in the SAX at

  • CVE-2026-86144MedSep 5, 2026
    affected < 2.12.5-10.el10_2.4fixed 2.12.5-10.el10_2.4

    In xinclude in libxml2 before 2.15.4, xmlXIncludeProcess and xmlXIncludeProcessTree do not propagate parseFlags. This has security relevance for, for example, the XML_PARSE_NONET flag, if (without it) a custom resource loader accesses the internet and triggers XML external entity

  • CVE-2026-86143MedSep 5, 2026
    affected < 2.12.5-10.el10_2.4fixed 2.12.5-10.el10_2.4

    In xmlIO in libxml2 before 2.15.4, an inconsistency in xmlOutputWriteCallback and xmlBufUse causes negative lengths to reach write callbacks, aka a lack of a check for integer overflow before calling writecallback. This has security relevance for many types of uses of that length

  • CVE-2026-86142MedSep 5, 2026
    affected < 2.12.5-10.el10_2.4fixed 2.12.5-10.el10_2.4

    In libxml2 before 2.15.4, there is a heap-based buffer overflow in xmlXPtrEvalXPtrPart because of xmlXPtrEval xpointer length saturation.

  • CVE-2026-86140HigSep 5, 2026
    affected < 2.12.5-10.el10_2.4fixed 2.12.5-10.el10_2.4

    In libxml2 before 2.15.4, xmlSnprintfElements in valid.c has a strcat stack-based buffer overflow.

  • CVE-2026-86138MedSep 5, 2026
    affected < 2.12.5-10.el10_2.4fixed 2.12.5-10.el10_2.4

    In libxml2 before 2.15.4, xmlDictAddQString in dict.c has an integer overflow and resultant heap-based buffer overflow.

  • CVE-2026-11979HigJun 29, 2026
    affected < 2.12.5-10.el10_2.3fixed 2.12.5-10.el10_2.3

    libxml2 is vulnerable to multiple stack-based buffer overflows in the xmlcatalog utility when running in --shell mode. The usershell() function processes user input using fixed-size stack buffers without proper bounds checking. By supplying an overly long input line, an attacker

  • CVE-2025-6170LowJun 16, 2025
    affected < 2.12.5-10.el10_2.2fixed 2.12.5-10.el10_2.2

    A flaw was found in the interactive shell of the xmllint command-line tool, used for parsing XML files. When a user inputs an overly long command, the program does not check the input size properly, which can cause it to crash. This issue might allow attackers to run harmful code

  • CVE-2025-49796CriJun 16, 2025
    affected < 2.12.5-7.el10_0fixed 2.12.5-7.el10_0

    A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory corruption issue. This flaw allows an attacker to craft a malicious XML input file that can lead libxml to crash, resulting in a denial of service or other poss

  • CVE-2025-49795HigJun 16, 2025
    affected < 2.12.5-7.el10_0fixed 2.12.5-7.el10_0

    A NULL pointer dereference vulnerability was found in libxml2 when processing XPath XML expressions. This flaw allows an attacker to craft a malicious XML input to libxml2, leading to a denial of service.

  • CVE-2025-49794CriJun 16, 2025
    affected < 2.12.5-7.el10_0fixed 2.12.5-7.el10_0

    A use-after-free vulnerability was found in libxml2. This issue occurs when parsing XPath elements under certain circumstances when the XML schematron has the <sch:name path="..."/> schema elements. This flaw allows a malicious actor to craft a malicious XML document used as inpu

  • CVE-2025-6021HigJun 12, 2025
    affected < 2.12.5-7.el10_0fixed 2.12.5-7.el10_0

    A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer size calculations can lead to a stack-based buffer overflow. This issue can result in memory corruption or a denial of service when processing crafted input.

  • CVE-2025-32415LowApr 17, 2025
    affected < 2.12.5-9.el10_0fixed 2.12.5-9.el10_0

    In libxml2 before 2.13.8 and 2.14.x before 2.14.2, xmlSchemaIDCFillNodeTables in xmlschemas.c has a heap-based buffer under-read. To exploit this, a crafted XML document must be validated against an XML schema with certain identity constraints, or a crafted XML schema must be use

  • CVE-2025-32414MedApr 8, 2025
    affected < 2.12.5-9.el10_0fixed 2.12.5-9.el10_0

    In libxml2 before 2.13.8 and 2.14.x before 2.14.2, out-of-bounds memory access can occur in the Python API (Python bindings) because of an incorrect return value. This occurs in xmlPythonFileRead and xmlPythonFileReadRaw because of a difference between bytes and characters.

  • CVE-2024-34459HigMay 14, 2024
    affected < 2.12.5-10.el10_2.1fixed 2.12.5-10.el10_2.1

    An issue was discovered in xmllint (from libxml2) before 2.11.8 and 2.12.x before 2.12.7. Formatting error messages with xmllint --htmlout can result in a buffer over-read in xmlHTMLPrintFileContext in xmllint.c.