RHSA-2026:39304: Low: libxml2 security update
Low: libxml2 security update
Other sources
The libxml2 library is a development toolbox providing the implementation of various XML standards.Security Fix(es): libxml2: Stack Buffer Overflow in xmllint Interactive Shell Command Handling (CVE-2025-6170) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Apply the libxml2 security update addressing the Stack Buffer Overflow in xmllint Interactive Shell Command Handling (CVE-2025-6170) by following the update application steps referenced in the advisory article at https://access.redhat.com/articles/11258.
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:39304?
The severity of RHSA-2026:39304 is classified as low.
What does the RHSA-2026:39304 security update address?
RHSA-2026:39304 addresses a stack buffer overflow vulnerability in the xmllint interactive shell command handling of the libxml2 library.
How do I fix RHSA-2026:39304?
To fix RHSA-2026:39304, update the libxml2 package to the latest version available through the Red Hat repositories.
What systems are affected by RHSA-2026:39304?
RHSA-2026:39304 affects various platforms running Red Hat Enterprise Linux, including Power, ARM 64, and IBM z Systems.
Is the vulnerability addressed in RHSA-2026:39304 critical?
No, the vulnerability addressed in RHSA-2026:39304 is considered low in severity.