A flaw was found in the interactive shell of the xmllint command-line tool, used for parsing XML files. When a user inputs an overly long command, the program does not check the input size properly, which can cause it to crash. This issue might allow attackers to run harmful code in rare configurations without modern protections.
CVSS Details
- CVSS 3.1 Base Score: 2.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | alma-upgrade-libxml2alma-upgrade-libxml2-develalma-upgrade-python3-libxml2 | Jul 9, 2026 | Jul 8, 2026 | |
| Alpine Linux | alpine-linux-upgrade-libxml2 | Oct 9, 2025 | Jun 16, 2025 | |
| Arch Linux | arch-linux-upgrade-latest | Jul 11, 2025 | Jun 16, 2025 | |
| Debian | debian-upgrade-libxml2 | Jun 18, 2025 | Jun 16, 2025 | |
| Freebsd | freebsd-upgrade-package-libxml2freebsd-upgrade-package-linux-c7-libxml2freebsd-upgrade-package-linux-rl9-libxml2 | Jul 13, 2025 | Jul 12, 2025 | |
| Huawei Euleros 2_0_sp10 | huawei-euleros-2_0_sp10-upgrade-libxml2huawei-euleros-2_0_sp10-upgrade-python3-libxml2 | Sep 15, 2025 | Sep 9, 2025 | |
| Huawei Euleros 2_0_sp11 | huawei-euleros-2_0_sp11-upgrade-libxml2huawei-euleros-2_0_sp11-upgrade-python3-libxml2 | Oct 14, 2025 | Sep 9, 2025 | |
| Huawei Euleros 2_0_sp12 | huawei-euleros-2_0_sp12-upgrade-libxml2huawei-euleros-2_0_sp12-upgrade-python3-libxml2 | Sep 15, 2025 | Sep 9, 2025 | |
| Huawei Euleros 2_0_sp13 | huawei-euleros-2_0_sp13-upgrade-libxml2huawei-euleros-2_0_sp13-upgrade-python3-libxml2 | Oct 24, 2025 | Sep 9, 2025 | |
| Redhat_linux | no-fix-redhat-rpm-packageredhat-upgrade-libxml2redhat-upgrade-libxml2-debuginforedhat-upgrade-libxml2-debugsourceredhat-upgrade-libxml2-develredhat-upgrade-libxml2-staticredhat-upgrade-python3-libxml2redhat-upgrade-python3-libxml2-debuginfo | Jul 9, 2025 | Jun 16, 2025 | |
| Rocky_linux | rocky-upgrade-libxml2rocky-upgrade-libxml2-debuginforocky-upgrade-libxml2-debugsourcerocky-upgrade-libxml2-develrocky-upgrade-libxml2-staticrocky-upgrade-python3-libxml2rocky-upgrade-python3-libxml2-debuginfo | Jul 10, 2026 | Jul 9, 2026 | |
| Suse | — | suse-upgrade-libxml2-2suse-upgrade-libxml2-2-32bitsuse-upgrade-libxml2-develsuse-upgrade-libxml2-devel-32bitsuse-upgrade-libxml2-docsuse-upgrade-libxml2-toolssuse-upgrade-python-libxml2suse-upgrade-python3-libxml2suse-upgrade-python3-libxml2-pythonsuse-upgrade-python311-libxml2suse-upgrade-python313-libxml2 | Jul 10, 2025 | Jun 16, 2025 |
| Ubuntu | ubuntu-pro-upgrade-libxml2ubuntu-pro-upgrade-python-libxml2ubuntu-pro-upgrade-python3-libxml2ubuntu-upgrade-libxml2ubuntu-upgrade-python3-libxml2 | Aug 21, 2025 | Jun 16, 2025 | |
| Vmware Photon_os | vmware-photon_os_update_tdnf | Feb 9, 2026 | Jun 16, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub