Release Info

Advisory: CLSA-2025:1753374522

OS: Oracle Linux 6 ELS

Public date: 2025-07-24 16:28:32

Project: libxml2

Version: 2.7.6-21.0.1.el6_8.1.tuxcare.ol.els9

Errata link: https://errata.tuxcare.com/els_os/oraclelinux6els/CLSA-2025-1753374522.html

Changelog

- CVE-2025-49794: fix memory safety issues in xmlSchematronReportOutput when parsing XPath elements - CVE-2025-49796: fix memory corruption issue triggered by processing sch:name elements in input XML file

Update

Update command: yum update libxml2*

Packages list

libxml2-2.7.6-21.0.1.el6_8.1.tuxcare.ol.els9.i686.rpm libxml2-2.7.6-21.0.1.el6_8.1.tuxcare.ol.els9.x86_64.rpm libxml2-devel-2.7.6-21.0.1.el6_8.1.tuxcare.ol.els9.i686.rpm libxml2-devel-2.7.6-21.0.1.el6_8.1.tuxcare.ol.els9.x86_64.rpm libxml2-python-2.7.6-21.0.1.el6_8.1.tuxcare.ol.els9.x86_64.rpm libxml2-static-2.7.6-21.0.1.el6_8.1.tuxcare.ol.els9.x86_64.rpm

CVEs

CVE-2025-49794
CVE-2025-49796