UbuntuUpdates.org

Package "libxml2"

Name: libxml2

Description:

GNOME XML library

Latest version: 2.9.14+dfsg-1.3ubuntu0.1
Release: mantic (23.10)
Level: updates
Repository: main
Homepage: http://xmlsoft.org

Links


Download "libxml2"


Other versions of "libxml2" in Mantic

Repository Area Version
base universe 2.9.14+dfsg-1.3
base main 2.9.14+dfsg-1.3
security main 2.9.14+dfsg-1.3ubuntu0.1
security universe 2.9.14+dfsg-1.3ubuntu0.1
updates universe 2.9.14+dfsg-1.3ubuntu0.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2.9.14+dfsg-1.3ubuntu0.1 2024-02-26 17:07:22 UTC

  libxml2 (2.9.14+dfsg-1.3ubuntu0.1) mantic-security; urgency=medium

  * SECURITY UPDATE: use-after-free via XInclude expansion
    - debian/patches/CVE-2024-25062.patch: don't expand XIncludes when
      backtracking in xmlreader.c.
    - CVE-2024-25062

 -- Marc Deslauriers <email address hidden> Fri, 16 Feb 2024 13:12:19 -0500

CVE-2024-25062 An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.12.5. When using the XML Reader interface with DTD validation and XInclude expan



About   -   Send Feedback to @ubuntu_updates