[CLSA-2026:1789381872] libxml2: Fix of CVE-2026-86142
Type:
security
Severity:
Critical
Release date:
2026-09-14 10:31:22 UTC
Description:
- CVE-2026-86142: fix heap buffer overflow in xmlXPtrEvalXPtrPart by rejecting XPointer parts whose length is not representable as an int
CVEs fixed:
Updated packages:
  • libxml2-2.9.1-6.0.11.el7_9.6.tuxcare.els9.i686.rpm
    sha:21f3f6b945c9d251204f82da1ae0fa0f714221328ad981198191a5668668cebe
  • libxml2-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:a7f8d12ea350cf24d3f6410fd6e0a1448d239121356f3ee7f8ad03ca86a34d05
  • libxml2-devel-2.9.1-6.0.11.el7_9.6.tuxcare.els9.i686.rpm
    sha:e5744ca75646412217a734734d4b8ef0a4e902506f60ce5bf8026d771e3a20b3
  • libxml2-devel-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:fe31d59e87ebad1cdeff715badcfcb94000891579157ecc3a0b7c2ff37de18ee
  • libxml2-python-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:1eb2e60b7f98ee0821a4cbdff653ef62548028224e85e1f4c1a85f9d4fd9d74d
  • libxml2-static-2.9.1-6.0.11.el7_9.6.tuxcare.els9.i686.rpm
    sha:d710bb71b682967c6aac19ef55e2498fe996fa959161a6b2a64e3f5300343db8
  • libxml2-static-2.9.1-6.0.11.el7_9.6.tuxcare.els9.x86_64.rpm
    sha:3fdfca980ac9a318132115fa16947960543ada80479c9a8bb8df0e8181750ea0
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.