GHSA-gg7j-w83p-fxr9HighCVSS 7.5
A NULL pointer dereference vulnerability was found in libxml2 when processing XPath XML...
🔗 CVE IDs covered (1)
📋 Description
A NULL pointer dereference vulnerability was found in libxml2 when processing XPath XML expressions. This flaw allows an attacker to craft a malicious XML input to libxml2, leading to a denial of service.
🔗 References (9)
- https://nvd.nist.gov/vuln/detail/CVE-2025-49795
- https://access.redhat.com/security/cve/CVE-2025-49795
- https://bugzilla.redhat.com/show_bug.cgi?id=2372379
- https://access.redhat.com/errata/RHSA-2025:10630
- https://access.redhat.com/errata/RHSA-2025:19020
- https://gitlab.gnome.org/GNOME/libxml2/-/issues/932
- https://access.redhat.com/errata/RHSA-2026:7519
- https://cert-portal.siemens.com/productcert/html/ssa-253495.html
- https://github.com/advisories/GHSA-gg7j-w83p-fxr9