[CLSA-2026:1789382155] libxml2: Fix of CVE-2026-86142
Type:
security
Severity:
Critical
Release date:
2026-09-16 23:33:13 UTC
Description:
- CVE-2026-86142: fix heap buffer overflow in xmlXPtrEvalXPtrPart by rejecting XPointer parts whose length is not representable as an int
CVEs fixed:
Updated packages:
  • libxml2-2.9.1-6.0.11.el7_9.6.tuxcare.els9.i686.rpm
    sha:6397b40559c5d3e04108972b4e065ca7434faaba559b5f2dcbdb98c6809b530d
  • libxml2-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:5941d47f94110d9673fb16bc42bc47634d450734dd6e30b373cff36f72500854
  • libxml2-devel-2.9.1-6.0.11.el7_9.6.tuxcare.els9.i686.rpm
    sha:cdf40c837a5ef528c1ff369d6b3240e4dd78bbf027925078d3f3d06bc02c7863
  • libxml2-devel-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:5539d66e264e86ef8e6e1150c1ec222536fd12b3dbfe8aa65b5d4838dc026cb8
  • libxml2-python-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:8e18cbcbbd987c833492f265250b29036508a3a43ee7c1e24b9570c1f4e58331
  • libxml2-static-2.9.1-6.0.11.el7_9.6.tuxcare.els9.i686.rpm
    sha:52fa24efa8b46f530c44dcb36243cc1b7b314d71d8e63b8c9af625badd39c95e
  • libxml2-static-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:fadfdbad81e155c2cdc2a9fb2cb29df513eda26e46f4318e0c8f68221bbc809b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.