[CLSA-2026:1789381419] libxml2: Fix of CVE-2026-86142
Type:
security
Severity:
Critical
Release date:
2026-09-14 14:35:07 UTC
Description:
- CVE-2026-86142: fix heap buffer overflow in xmlXPtrEvalXPtrPart by rejecting XPointer parts whose length is not representable as an int
CVEs fixed:
Updated packages:
  • libxml2-2.9.1-6.0.11.el7_9.6.tuxcare.els9.i686.rpm
    sha:bc95f4cc95caef74670dbc66b55420beb0f4a3712fd7f00f2aa695463fdfd20c
  • libxml2-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:2f70aa28d564c658592fb7222411b4833cf2d26659ed95ab70befa656615b41a
  • libxml2-devel-2.9.1-6.0.11.el7_9.6.tuxcare.els9.i686.rpm
    sha:4a796863755549e49a1bd5660e54553cd688000d8461a9c751b426f94d6d9c29
  • libxml2-devel-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:af9c246b03d7461b3b6c98a8df02739ad43f973219f51c0cb402cbe9a8260a53
  • libxml2-python-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:c5fc8c7239ed528295e627bd597d65d5c919c74fa7593a253d311c2c418659cf
  • libxml2-static-2.9.1-6.0.11.el7_9.6.tuxcare.els9.i686.rpm
    sha:2480975fc3709b8bf899923ce9e885a2e53f80aaea0567f8e7f99e7324f64deb
  • libxml2-static-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:ac7298005f5cc8385a50f2236962a609bd3d3b99a825adaf5dba57322221e560
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.