Release Info

Advisory: CLSA-2025:1753377886

OS: CentOS 6 ELS

Public date: 2025-07-24 17:24:36

Project: libxml2

Version: 2.7.6-21.el6_8.1.tuxcare.els9

Errata link: https://errata.tuxcare.com/els_os/centos6els/CLSA-2025-1753377886.html

Changelog

- CVE-2025-49794: fix memory safety issues in xmlSchematronReportOutput when parsing XPath elements - CVE-2025-49796: fix memory corruption issue triggered by processing sch:name elements in input XML file

Update

Update command: yum update libxml2*

Packages list

libxml2-2.7.6-21.el6_8.1.tuxcare.els9.i686.rpm libxml2-2.7.6-21.el6_8.1.tuxcare.els9.x86_64.rpm libxml2-devel-2.7.6-21.el6_8.1.tuxcare.els9.i686.rpm libxml2-devel-2.7.6-21.el6_8.1.tuxcare.els9.x86_64.rpm libxml2-python-2.7.6-21.el6_8.1.tuxcare.els9.x86_64.rpm libxml2-static-2.7.6-21.el6_8.1.tuxcare.els9.x86_64.rpm

CVEs

CVE-2025-49796
CVE-2025-49794