First published: Tue Mar 11 2025(Updated: )
Important: libxml2 security update
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/libxml2 | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2 | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-debuginfo | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-debuginfo | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-devel | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-devel | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-python | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-static | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-static | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-python | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2 | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-debuginfo | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-devel | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-python | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
redhat/libxml2-static | <2.9.1-6.el7_9.9 | 2.9.1-6.el7_9.9 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian | ||
Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) | ||
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian | ||
Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2025:2673 is classified as important.
RHSA-2025:2673 addresses a use-after-free vulnerability (CVE-2024-56171) and a stack-based buffer overflow in libxml2.
To fix RHSA-2025:2673, update libxml2 and its related packages to version 2.9.1-6.el7_9.9.
The affected packages include libxml2, libxml2-devel, libxml2-python, and their debuginfo versions.
Updating for RHSA-2025:2673 is important to mitigate the risks of security vulnerabilities that could be exploited.