REDHAT-BUG-2342118: Use After Free
Published Jan 26, 2025
·Updated
xmlXIncludeAddNode in xinclude.c in libxml2 before 2.11.0 has a use-after-free.
Affected Software
1 affected component
libxml2 libxml2<2.11.0
Event History
Jan 26, 2025
Data Sourced
via Red Hat·06:01 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2342118?
The severity of REDHAT-BUG-2342118 is categorized as critical due to the presence of a use-after-free vulnerability.
2
How do I fix REDHAT-BUG-2342118?
To fix REDHAT-BUG-2342118, you should upgrade libxml2 to version 2.11.0 or later.
3
What systems are affected by REDHAT-BUG-2342118?
Systems using libxml2 versions prior to 2.11.0 are affected by REDHAT-BUG-2342118.
4
What are the risks of not addressing REDHAT-BUG-2342118?
Not addressing REDHAT-BUG-2342118 may expose your systems to potential exploits leading to remote code execution.
5
Is there a workaround for REDHAT-BUG-2342118?
There are no specific workarounds for REDHAT-BUG-2342118; the only solution is to update the affected software.