Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-0989

Опубликовано: 19 янв. 2026
Источник: msrc
CVSS3: 3.7
EPSS Низкий

Описание

Libxml2: unbounded relaxng include recursion leading to stack overflow

Обновления

ПродуктСтатьяОбновление
azl3 libxml2 2.11.5-9 on Azure Linux 3.0
-
azl3 libxml2 2.11.5-10 on Azure Linux 3.0
-
cbl2 libxml2 2.10.4-11 on CBL-Mariner 2.0

Показывать по

EPSS

Процентиль: 42%
0.00498
Низкий

3.7 Low

CVSS3

Связанные уязвимости

CVSS3: 3.7
ubuntu
8 месяцев назад

A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schemas can cause excessive recursion during parsing. This may lead to stack exhaustion and application crashes, creating a denial-of-service risk.

CVSS3: 3.7
redhat
8 месяцев назад

A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schemas can cause excessive recursion during parsing. This may lead to stack exhaustion and application crashes, creating a denial-of-service risk.

CVSS3: 3.7
nvd
8 месяцев назад

A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schemas can cause excessive recursion during parsing. This may lead to stack exhaustion and application crashes, creating a denial-of-service risk.

CVSS3: 3.7
debian
8 месяцев назад

A flaw was identified in the RelaxNG parser of libxml2 related to how ...

suse-cvrf
8 месяцев назад

Security update for libxml2

EPSS

Процентиль: 42%
0.00498
Низкий

3.7 Low

CVSS3