Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-2679

Опубликовано: 07 мая 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-2679: libxml2 security update (MODERATE)

[2.9.13-6]

  • Fix CVE-2024-25062 (RHEL-29196)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

libxml2

2.9.13-6.el9_4

libxml2-devel

2.9.13-6.el9_4

python3-libxml2

2.9.13-6.el9_4

Oracle Linux x86_64

libxml2

2.9.13-6.el9_4

libxml2-devel

2.9.13-6.el9_4

python3-libxml2

2.9.13-6.el9_4

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 1 года назад

An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.12.5. When using the XML Reader interface with DTD validation and XInclude expansion enabled, processing crafted XML documents can lead to an xmlValidatePopElement use-after-free.

CVSS3: 7.5
redhat
больше 1 года назад

An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.12.5. When using the XML Reader interface with DTD validation and XInclude expansion enabled, processing crafted XML documents can lead to an xmlValidatePopElement use-after-free.

CVSS3: 7.5
nvd
больше 1 года назад

An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.12.5. When using the XML Reader interface with DTD validation and XInclude expansion enabled, processing crafted XML documents can lead to an xmlValidatePopElement use-after-free.

CVSS3: 7.5
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 7.5
debian
больше 1 года назад

An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.1 ...