Advisories ยป MGASA-2024-0211

Updated libxml2 packages fix security vulnerability

Publication date: 06 Jun 2024
Modification date: 06 Jun 2024
Type: security
Affected Mageia releases : 9
CVE: CVE-2024-34459

Description

The updated packages fix a security vulnerability:
An issue was discovered in xmllint (from libxml2) before 2.11.8 and
2.12.x before 2.12.7. Formatting error messages with xmllint --htmlout
can result in a buffer over-read in xmlHTMLPrintFileContext in
xmllint.c. (CVE-2024-34459)
                

References

SRPMS

9/core