Release Info

Advisory: CLSA-2025:1758292868

OS: Ubuntu 18.04 ELS

Public date: 2025-09-19 14:41:10.376457

Project: libxml2

Version: 2.9.4+dfsg1-6.1ubuntu1.9+tuxcare.els6

Errata link: https://errata.tuxcare.com/els_os/ubuntu18.04els/CLSA-2025-1758292868.html

Changelog

* SECURITY UPDATE: memory corruption vulnerability in attribute type flags - debian/patches/CVE-2025-7425.patch: Fix heap-use-after-free caused by `atype` corruption - CVE-2025-7425

Update

Update command: apt-get update apt-get --only-upgrade install libxml2*

Packages list

libxml2_2.9.4+dfsg1-6.1ubuntu1.9+tuxcare.els6_amd64.deb libxml2-dev_2.9.4+dfsg1-6.1ubuntu1.9+tuxcare.els6_amd64.deb libxml2-doc_2.9.4+dfsg1-6.1ubuntu1.9+tuxcare.els6_all.deb libxml2-utils_2.9.4+dfsg1-6.1ubuntu1.9+tuxcare.els6_amd64.deb python-libxml2_2.9.4+dfsg1-6.1ubuntu1.9+tuxcare.els6_amd64.deb python3-libxml2_2.9.4+dfsg1-6.1ubuntu1.9+tuxcare.els6_amd64.deb

CVEs

CVE-2025-7425