[CLSA-2026:1787732374] libxml2: Fix of CVE-2026-6653
Type:
security
Severity:
Critical
Release date:
2026-08-26 08:19:56 UTC
Description:
- CVE-2026-6653: fix use-after-free in xmlParseInternalSubset; xmlPushInput reported a halted parser as a push failure after the input was already installed, so the caller freed a live input
CVEs fixed:
Updated packages:
  • libxml2-2.9.13-12.el9_6.tuxcare.els6.i686.rpm
    sha:211df11886bee2c41d29d394ade39bec054ea8658a2470728655d56b2a905fcf
  • libxml2-2.9.13-12.el9_6.tuxcare.els6.x86_64.rpm
    sha:8901d6317ca18e137e8b4293ec343a0dbd1c4fd8f339a16fec05fd81c8c023e2
  • libxml2-devel-2.9.13-12.el9_6.tuxcare.els6.i686.rpm
    sha:06eafb5ef81b73427ec88d5c9ba5b57e8489f2b32c82cd0b4216b2b83b170bb0
  • libxml2-devel-2.9.13-12.el9_6.tuxcare.els6.x86_64.rpm
    sha:f03fd495cb11b64f76c12e8d79202050bcda3c94e5575e5dbe99d1068f824aa1
  • libxml2-static-2.9.13-12.el9_6.tuxcare.els6.x86_64.rpm
    sha:cd5e08b85f1a59b46748b27b371583564ac49bcb3f70f04b6408a6414dbaa74e
  • python3-libxml2-2.9.13-12.el9_6.tuxcare.els6.x86_64.rpm
    sha:9004a359bb2105c97e4392c755fb63d65c3d4b93520fef5ef3f200f86b20760a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.