Release Info

Advisory: CLSA-2024:1708639232

OS: CentOS 6 ELS

Public date: 2024-02-22 17:00:34

Project: libxml2

Version: 2.7.6-21.el6_8.1.tuxcare.els5

Errata link: https://errata.tuxcare.com/els_os/centos6els/CLSA-2024-1708639232.html

Changelog

- CVE-2024-25062: Fix xmlValidatePopElement use-after-free in XML Reader interface with DTD validation and XInclude expansion enabled - test suite was partially activated

Update

Update command: yum update libxml2*

Packages list

libxml2-2.7.6-21.el6_8.1.tuxcare.els5.i686.rpm libxml2-2.7.6-21.el6_8.1.tuxcare.els5.x86_64.rpm libxml2-devel-2.7.6-21.el6_8.1.tuxcare.els5.i686.rpm libxml2-devel-2.7.6-21.el6_8.1.tuxcare.els5.x86_64.rpm libxml2-python-2.7.6-21.el6_8.1.tuxcare.els5.x86_64.rpm libxml2-static-2.7.6-21.el6_8.1.tuxcare.els5.x86_64.rpm

CVEs

CVE-2024-25062