F5-K000156606: Null Pointer Dereference
Published Sep 24, 2025
·Updated
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a NULL pointer dereference in xmlPatMatch in pattern.c.
Affected Software
1 affected component
F5 Traffix SDC=5.2.0
Event History
Sep 24, 2025
Advisory Published
via F5·03:21 PM
Data Sourced
via F5·03:21 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of F5-K000156606?
The severity of F5-K000156606 is classified as critical due to the potential for denial of service.
2
How do I fix F5-K000156606?
To fix F5-K000156606, update the libxml2 library to version 2.12.10 or later, or version 2.13.6 or later.
3
Which versions of Traffix SDC are affected by F5-K000156606?
F5-K000156606 affects F5 Traffix SDC version 5.2.0.
4
What vulnerabilities are associated with F5-K000156606?
F5-K000156606 is associated with a NULL pointer dereference vulnerability in libxml2.
5
Is there a workaround for F5-K000156606?
Currently, there is no known workaround for F5-K000156606 other than applying the update.