Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

openSUSE Leap 15.5/15.6 Moderate libxml2 Security Update 2026-0570-1

suse
Calendar Grey February 18, 2026
Dist Suse Esm H88
Five vulnerabilities fixed in libxml2 update for openSUSE Leap and SUSE Linux Enterprise Micro. Ensure your systems are secured.
An update that solves five vulnerabilities and has six security fixes can now be installed.

Summary

## This update for libxml2 fixes the following issues: * CVE-2026-0990: Fixed a call stack overflow leading to application crash due to infinite recursion in `xmlCatalogXMLResolveURI`. (bsc#1256807, bsc#1256811) * CVE-2026-0992: Fixed an excessive resource consumption when processing XML catalogs due to exponential behavior. (bsc#1256809, bsc#1256812) * CVE-2026-1757: Fixed a memory leak in the `xmllint` interactive shell. (bsc#1257594, bsc#1257595) * CVE-2025-10911: Fixed a use-after-free with key data stored cross-RVT. (bsc#1250553) * CVE-2025-8732: Fixed an infinite recursion in catalog parsing functions when processing malformed SGML catalog files. (bsc#1247858) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like

References

* bsc#1247850

* bsc#1247858

* bsc#1250553

* bsc#1256807

* bsc#1256808

* bsc#1256809

* bsc#1256811

* bsc#1256812

* bsc#1257593

* bsc#1257594

* bsc#1257595

Cross-

* CVE-2025-10911

* CVE-2025-8732

* CVE-2026-0990

* CVE-2026-0992

* CVE-2026-1757

CVSS scores:

* CVE-2025-10911 ( SUSE ): 6.8

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

* CVE-2025-10911 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

* CVE-2025-10911 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

* CVE-2025-8732 ( SUSE ): 4.8

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

* CVE-2025-8732 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

* CVE-2025-8732 ( NVD ): 1.9

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:0570-1
Release Date: 2026-02-17T16:38:53Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here