CVE-2025-27113

Updated: 2026-02-27 01:43:53.806405

Description:

libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a NULL pointer dereference in xmlPatMatch in pattern.c.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU libxml2 2.9.13 7.5 HIGH Released CLSA-2025:1741215702 2025-03-06 22:05:25
Alpine Linux 3.18 ELS libxml2 2.11.8 7.5 HIGH Already Fixed 2025-12-05 22:20:32
CentOS 6 ELS libxml2 2.7.6 7.5 HIGH Released CLSA-2025:1741636522 2025-03-26 03:27:21
CentOS 7 ELS libxml2 2.9.1 7.5 HIGH Released CLSA-2025:1741291888 2025-03-18 23:40:52
CentOS 8.4 ELS libxml2 2.9.7-9 7.5 HIGH Released CLSA-2025:1741629104 2025-03-10 22:56:20
CentOS 8.5 ELS libxml2 2.9.7-9 7.5 HIGH Released CLSA-2025:1741629749 2025-03-10 22:56:23
CentOS Stream 8 ELS libxml2 2.9.7 7.5 HIGH Released CLSA-2025:1741628775 2025-03-10 22:56:19
CloudLinux 6 ELS libxml2 2.7.6 7.5 HIGH Released CLSA-2025:1741637279 2025-03-26 03:27:19
CloudLinux 7 ELS libxml2 2.9.1 7.5 HIGH Released CLSA-2025:1741292152 2025-03-17 23:19:04
Debian 10 ELS libxml2 2.9.4 7.5 HIGH Released CLSA-2025:1761312327 2025-10-24 19:20:30
Total: 17