Advisories ยป MGASA-2023-0298

Updated libxml2 packages fix a security vulnerability

Publication date: 22 Oct 2023
Modification date: 22 Oct 2023
Type: security
Affected Mageia releases : 8 , 9
CVE: CVE-2023-45322

Description

libxml2 through 2.11.5 has a use-after-free that can only occur after a
certain memory allocation fails. This occurs in xmlUnlinkNode in tree.c.
(CVE-2023-45322)
                

References

SRPMS

8/core

9/core