Release Info

Advisory: CLSA-2022:1647261009

OS: CentOS 8.4 ELS

Public date: 2022-03-14 00:00:00

Project: libxml2

Version: 2.9.7-9.el8_4.2.tuxcare.els1

Errata link: https://errata.cloudlinux.com/centos8.4-els/CLSA-2022-1647261009.html

Changelog

- CVE-2022-23308: fix use-after-free of ID and IDREF attributes

Update

Update command: dnf update libxml2*

Packages list

libxml2-static-2.9.7-9.el8_4.2.tuxcare.els1.x86_64.rpm libxml2-2.9.7-9.el8_4.2.tuxcare.els1.x86_64.rpm libxml2-2.9.7-9.el8_4.2.tuxcare.els1.i686.rpm libxml2-devel-2.9.7-9.el8_4.2.tuxcare.els1.i686.rpm libxml2-devel-2.9.7-9.el8_4.2.tuxcare.els1.x86_64.rpm python3-libxml2-2.9.7-9.el8_4.2.tuxcare.els1.x86_64.rpm

CVEs

CVE-2022-23308