CVE-2025-27113

Updated: 2026-02-27 01:43:53.806405

Description:

libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a NULL pointer dereference in xmlPatMatch in pattern.c.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

Oracle Linux 6 ELS libxml2 2.7.6 7.5 HIGH Released CLSA-2025:1741629091 2025-03-10 22:56:19
Oracle Linux 7 ELS libxml2 2.9.1 7.5 HIGH Released CLSA-2025:1741286016 2025-03-06 22:05:24
RHEL 7 ELS libxml2 2.9.1 7.5 HIGH Released CLSA-2025:1748282366 2025-05-27 03:54:52
TuxCare 9.6 ESU libxml2 2.9.13 7.5 HIGH Released CLSA-2025:1764958229 2025-12-05 21:10:35
Ubuntu 16.04 ELS libxml2 2.9.3 7.5 HIGH Released CLSA-2025:1741286239 2025-03-06 22:06:19
Ubuntu 18.04 ELS libxml2 2.9.4 7.5 HIGH Released CLSA-2025:1741286348 2025-03-06 22:06:24
Ubuntu 20.04 ELS libxml2 2.9.10 7.5 HIGH Already Fixed 2025-03-25 03:25:18
Total: 17