[CLSA-2025:1757428021] libxml2: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2025-09-09 14:27:05 UTC
Description:
- CVE-2025-7425: fix heap-use-after-free in xmlFreeID caused by 'atype' corruption - CVE-2025-6021: fix integer overflows in buffer size calculations
Updated packages:
  • libxml2-2.9.1-6.0.3.el7_9.6.tuxcare.els7.i686.rpm
    sha:1246f961e96b5a46e8a5b3a80deff9b4ad2b88219ea34cb2b9baa65203fc6ca9
  • libxml2-2.9.1-6.0.3.el7_9.6.tuxcare.els7.x86_64.rpm
    sha:9e88eb13494610f554e3e4112cca0a3a338354ea10c5e5b9730a8dcf405a847a
  • libxml2-devel-2.9.1-6.0.3.el7_9.6.tuxcare.els7.i686.rpm
    sha:d8e37406077d5a8db2db68ad265e991ea1ec857c6ebea282e1c42dcea0d5bd49
  • libxml2-devel-2.9.1-6.0.3.el7_9.6.tuxcare.els7.x86_64.rpm
    sha:23db71a68469e9e0d108aa8708f06968f044c0fa207f19ed9608bfaa6ec13074
  • libxml2-python-2.9.1-6.0.3.el7_9.6.tuxcare.els7.x86_64.rpm
    sha:5b3f4f735b53d7b44c5aec5546080d38463b4cfc2a4b78ac62491cb4a9a7317f
  • libxml2-static-2.9.1-6.0.3.el7_9.6.tuxcare.els7.i686.rpm
    sha:50e2cbaf0262fc0d76d6e160aa3bae6769e5a072c2fe9832f07154dd4492e5b4
  • libxml2-static-2.9.1-6.0.3.el7_9.6.tuxcare.els7.x86_64.rpm
    sha:d322e0c04ce762ff8dfde6a484c0e9172155f0a346c64a98a124a15a588008a6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.