RHSA-2024:3625: Moderate: libxml2 security update
Moderate: libxml2 security update
Other sources
The libxml2 library is a development toolbox providing the implementation of various XML standards.Security Fix(es): libxml2: use-after-free in XMLReader (CVE-2024-25062) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:3625?
The severity of RHSA-2024:3625 is classified as moderate.
What vulnerabilities are addressed in RHSA-2024:3625?
RHSA-2024:3625 addresses a use-after-free vulnerability in XMLReader (CVE-2024-25062).
How do I fix RHSA-2024:3625?
To fix RHSA-2024:3625, update the libxml2 package to version 2.9.13-3.el9_2.3 or later.
Which software packages are affected by RHSA-2024:3625?
Affected packages include libxml2, libxml2-devel, libxml2-debuginfo, and python3-libxml2 among others.
Is there a workaround for RHSA-2024:3625?
Currently, there is no officially recommended workaround for RHSA-2024:3625; applying the security update is advised.