Alerts This Week
Warning Icon 1 1,213
Alerts This Week
Warning Icon 1 1,213

Oracle Linux 7 libxml2 Moderate Buffer Overflow Vuln ELSA-2026-22420

oracle
Calendar Grey June 30, 2026
Oracle Linux Logo Esm H88
Oracle Linux Advisory ELSA-2026-22420 provides necessary updates for libxml2 including fixes for heap-related issues.
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

Summary

[2.9.1-6.0.13.6] - Backport fix for CVE-2025-9714 [Orabug: 39476695] [2.9.1-6.0.11.6] - Fix CVE-2025-32415: Fix heap buffer overflow [Orabug: 38310750] [2.9.1-6.0.9.6] - Fix CVE-2025-7425: heap-use-after-free in xmlFreeID [Orabug: 38290330] [2.9.1-6.0.7.6] - Fix CVE-2025-6021, CVE-2025-32414, CVE-2025-49794, CVE-2025-49796 - [Orabug: 38255814] [2.9.1-6.0.5] - Fix CVE-2024-56171 [Orabug: 37694105] - Fix CVE-2025-24928 [Orabug: 37694105]

SRPMs

http://oss.oracle.com/ol7/SRPMS-updates/libxml2-2.9.1-6.0.13.el7_9.6.src.rpm

x86_64

libxml2-2.9.1-6.0.13.el7_9.6.i686.rpm libxml2-2.9.1-6.0.13.el7_9.6.x86_64.rpm libxml2-devel-2.9.1-6.0.13.el7_9.6.i686.rpm libxml2-devel-2.9.1-6.0.13.el7_9.6.x86_64.rpm libxml2-python-2.9.1-6.0.13.el7_9.6.x86_64.rpm libxml2-static-2.9.1-6.0.13.el7_9.6.i686.rpm libxml2-static-2.9.1-6.0.13.el7_9.6.x86_64.rpm

aarch64

Severity
moderate
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2025-9714

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here