VDB

ALSA-2025%3A2686

ALSA-2025%3A2686 PUBLISHED

The libxml2 library is a development toolbox providing the implementation of various XML standards. Security Fix(es): * libxml2: Use-After-Free in libxml2 (CVE-2024-56171) * libxml2: Stack-based buffer overflow in xmlSnprintfElements of libxml2 (CVE-2025-24928) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Affected Products

VendorProductVersions
AlmaLinux:8libxml20, 0
AlmaLinux:8python3-libxml20, 0
AlmaLinux:8libxml2-devel0, 0

Timeline

  • Mar 12, 2025 CVE Published
  • Mar 17, 2025 CVE Updated
  • Mar 6, 2026 Distribution Patch
  • Mar 6, 2026 Distribution Patch
  • Mar 6, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›