RHSA-2025:2673: Important: libxml2 security update
Published Mar 11, 2025
·Updated
Important: libxml2 security update
Affected Software
19 affected componentsFixes available
Red Hat Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian
Red Hat Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems)
Red Hat Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian
Red Hat Red Hat Enterprise Linux Server - Extended Life Cycle Support
redhat/libxml2<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-debuginfo<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-debuginfo<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-devel<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-devel<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-python<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-static<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-static<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-python<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-debuginfo<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-devel<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-python<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
redhat/libxml2-static<2.9.1-6.el7_9.9
2.9.1-6.el7_9.9
Remediation
Event History
Mar 11, 2025
Advisory Published
via Red Hat·11:59 PM
Frequently Asked Questions
1
What is the severity of RHSA-2025:2673?
The severity of RHSA-2025:2673 is classified as important.
2
What vulnerabilities are addressed in RHSA-2025:2673?
RHSA-2025:2673 addresses a use-after-free vulnerability (CVE-2024-56171) and a stack-based buffer overflow in libxml2.
3
How do I fix RHSA-2025:2673?
To fix RHSA-2025:2673, update libxml2 and its related packages to version 2.9.1-6.el7_9.9.
4
Which packages are affected by RHSA-2025:2673?
The affected packages include libxml2, libxml2-devel, libxml2-python, and their debuginfo versions.
5
Why is it important to update for RHSA-2025:2673?
Updating for RHSA-2025:2673 is important to mitigate the risks of security vulnerabilities that could be exploited.