Alerts This Week
Warning Icon 1 1,009
Alerts This Week
Warning Icon 1 1,009

Slackware 15.0: 2025-167-01 critical libxml2 integer overflow DoS

slackware
Calendar Grey June 16, 2025
Dist Slackware Esm H88
Important revisions rolled out for libxml2 in Slackware rectifying vulnerabilities and mitigating possible denial of service threats.
New libxml2 packages are available for Slackware 15.0 and -current to fix security issues

Summary

Here are the details from the Slackware 15.0 ChangeLog: patches/packages/libxml2-2.11.9-i586-4_slack15.0.txz: Rebuilt. This update fixes an integer overflow (wraparound) vulnerability in the xmlBuildQName() function of libxml2. This vulnerability is remotely exploitable if the attacker can influence XML content passed to affected applications, potentially resulting in denial of service. For more information, see: https://www.cve.org/CVERecord?id=CVE-2025-6021 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (http://osuosl.org) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 15.0: ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/libxml2-2.11.9-i586-4_slack15.0.txz
Updated package for Slackware x86_64 15.0: ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/libxml2-2.11.9-x86_64-4_slack15.0.txz
Updated package for Slackware -current: ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/l/libxml2-2.14.4-i686-1.txz
Updated package for Slackware x86_64 -current: ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/l/libxml2-2.14.4-x86_64-1.txz

MD5 Signatures

Slackware 15.0 package: 09bebd25c3f8489ca38f211c7c7c9583 libxml2-2.11.9-i586-4_slack15.0.txz
Slackware x86_64 15.0 package: 4fc6211168ba7ed094d43cdba3d2eb14 libxml2-2.11.9-x86_64-4_slack15.0.txz
Slackware -current package: d742d9e66a97c70f5a1cf041ae5d6c17 l/libxml2-2.14.4-i686-1.txz
Slackware x86_64 -current package: 5435ca452e4e55e028c97dfd5e8cd586 l/libxml2-2.14.4-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg libxml2-2.11.9-i586-4_slack15.0.txz

Your message here