- Issued:
- 2025-07-31
- Updated:
- 2025-07-31
RHBA-2025:12345 - libxml2 and libxslt bug fix and enhancement update
Synopsis
libxml2 and libxslt bug fix and enhancement update
Type/Severity
Bug Fix Advisory None
Topic
An update for libxml2 and libxslt is now available for Red Hat Enterprise Linux 10.
Description
The libxml2 library is a development toolbox providing the implementation of various XML standards.
Bug Fix(es) and Enhancement(s):
-
libxslt: Type confusion in xmlNode.psvi between stylesheet and source nodes [rhel-10.0.z] (JIRA:RHEL-102746)
-
libxslt: Heap Use-After-Free in libxslt caused by atype corruption in xmlAttrPtr [rhel-10.0.z] (JIRA:RHEL-102794)
Solution
For details on how to apply this update, which includes the changes described in this advisory, refer to:
https://access.redhat.com/articles/11258
Affected Products
| Product | Version | Arch |
|---|---|---|
| Red Hat Enterprise Linux for x86_64 | 10 | x86_64 |
| Red Hat Enterprise Linux for x86_64 - Extended Update Support | 10.0 | x86_64 |
| Red Hat Enterprise Linux for x86_64 - 4 years of updates | 10.0 | x86_64 |
| Red Hat Enterprise Linux for Power, little endian | 10 | ppc64le |
| Red Hat Enterprise Linux for Power, little endian - Extended Update Support | 10.0 | ppc64le |
| Red Hat Enterprise Linux for Power, little endian - 4 years of support | 10.0 | ppc64le |
| Red Hat Enterprise Linux for IBM z Systems | 10 | s390x |
| Red Hat Enterprise Linux for IBM z Systems - Extended Update Support | 10.0 | s390x |
| Red Hat Enterprise Linux for IBM z Systems - 4 years of updates | 10.0 | s390x |
| Red Hat Enterprise Linux for ARM 64 | 10 | aarch64 |
| Red Hat Enterprise Linux for ARM 64 - Extended Update Support | 10.0 | aarch64 |
| Red Hat Enterprise Linux for ARM 64 - 4 years of updates | 10.0 | aarch64 |
| Red Hat CodeReady Linux Builder for x86_64 | 10 | x86_64 |
| Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support | 10.0 | x86_64 |
| Red Hat CodeReady Linux Builder for Power, little endian | 10 | ppc64le |
| Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support | 10.0 | ppc64le |
| Red Hat CodeReady Linux Builder for IBM z Systems | 10 | s390x |
| Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support | 10.0 | s390x |
| Red Hat CodeReady Linux Builder for ARM 64 | 10 | aarch64 |
| Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support | 10.0 | aarch64 |
Updated Packages
- libxslt-devel-1.1.39-8.el10_0.x86_64.rpm
- libxml2-debuginfo-2.12.5-8.el10_0.x86_64.rpm
- python3-libxml2-2.12.5-8.el10_0.s390x.rpm
- libxml2-debuginfo-2.12.5-8.el10_0.aarch64.rpm
- libxml2-2.12.5-8.el10_0.ppc64le.rpm
- libxslt-devel-1.1.39-8.el10_0.aarch64.rpm
- libxml2-debugsource-2.12.5-8.el10_0.s390x.rpm
- libxml2-2.12.5-8.el10_0.s390x.rpm
- libxml2-2.12.5-8.el10_0.aarch64.rpm
- libxml2-static-2.12.5-8.el10_0.aarch64.rpm
- python3-libxml2-2.12.5-8.el10_0.aarch64.rpm
- libxml2-static-2.12.5-8.el10_0.ppc64le.rpm
- libxslt-devel-1.1.39-8.el10_0.ppc64le.rpm
- libxml2-devel-2.12.5-8.el10_0.x86_64.rpm
- libxslt-debugsource-1.1.39-8.el10_0.ppc64le.rpm
- libxslt-1.1.39-8.el10_0.x86_64.rpm
- libxml2-debugsource-2.12.5-8.el10_0.aarch64.rpm
- libxml2-debugsource-2.12.5-8.el10_0.x86_64.rpm
- libxml2-2.12.5-8.el10_0.x86_64.rpm
- libxslt-debugsource-1.1.39-8.el10_0.aarch64.rpm
- python3-libxml2-2.12.5-8.el10_0.ppc64le.rpm
- libxml2-devel-2.12.5-8.el10_0.aarch64.rpm
- libxslt-devel-1.1.39-8.el10_0.s390x.rpm
- python3-libxml2-debuginfo-2.12.5-8.el10_0.s390x.rpm
- libxslt-debuginfo-1.1.39-8.el10_0.aarch64.rpm
- libxslt-1.1.39-8.el10_0.aarch64.rpm
- python3-libxml2-debuginfo-2.12.5-8.el10_0.ppc64le.rpm
- libxml2-2.12.5-8.el10_0.src.rpm
- libxslt-1.1.39-8.el10_0.ppc64le.rpm
- libxslt-debuginfo-1.1.39-8.el10_0.x86_64.rpm
- libxslt-debugsource-1.1.39-8.el10_0.x86_64.rpm
- libxml2-debuginfo-2.12.5-8.el10_0.s390x.rpm
- libxml2-debuginfo-2.12.5-8.el10_0.ppc64le.rpm
- libxml2-devel-2.12.5-8.el10_0.s390x.rpm
- libxslt-debuginfo-1.1.39-8.el10_0.s390x.rpm
- libxslt-debugsource-1.1.39-8.el10_0.s390x.rpm
- libxml2-devel-2.12.5-8.el10_0.ppc64le.rpm
- libxml2-static-2.12.5-8.el10_0.s390x.rpm
- libxslt-1.1.39-8.el10_0.s390x.rpm
- python3-libxml2-2.12.5-8.el10_0.x86_64.rpm
- libxslt-1.1.39-8.el10_0.src.rpm
- python3-libxml2-debuginfo-2.12.5-8.el10_0.aarch64.rpm
- libxml2-static-2.12.5-8.el10_0.x86_64.rpm
- python3-libxml2-debuginfo-2.12.5-8.el10_0.x86_64.rpm
- libxslt-debuginfo-1.1.39-8.el10_0.ppc64le.rpm
- libxml2-debugsource-2.12.5-8.el10_0.ppc64le.rpm
Fixes
(none)
CVEs
References
(none)
Additional information
- The Red Hat security contact is This content is not included.secalert@redhat.com. More contact details at Security Contacts and Procedures.
- Offline Security Data data is available for integration with other systems. See Offline Security Data API to get started.