Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update
🔗 CVE IDs covered (13)
📋 Description
CVE-2025-6021 — libxml2: Integer Overflow in xmlBuildQName() Leads to Stack Buffer Overflow in libxml2 CVE-2025-6170 — libxml2: Stack Buffer Overflow in xmllint Interactive Shell Command Handling CVE-2025-9714 — libxslt: libxml2: Inifinite recursion at exsltDynMapFunction function in libexslt/dynamic.c CVE-2025-26434 — libxml2: Libxml2 out of bounds read CVE-2025-32414 — libxml2: Out-of-Bounds Read in libxml2 CVE-2025-32415 — libxml2: Out-of-bounds Read in xmlSchemaIDCFillNodeTables CVE-2025-49794 — libxml: Heap use after free (UAF) leads to Denial of service (DoS) CVE-2025-49795 — libxml: Null pointer dereference leads to Denial of service (DoS) CVE-2025-49796 — libxml: Type confusion leads to Denial of service (DoS) CVE-2026-0989 — libxml2: Unbounded RelaxNG Include Recursion Leading to Stack Overflow CVE-2026-0990 — libxml2: libxml2: Denial of Service via uncontrolled recursion in XML catalog processing CVE-2026-0992 — libxml2: libxml2: Denial of Service via crafted XML catalogs CVE-2026-1757 — libxml2: Memory Leak Leading to Local Denial of Service in xmllint Interactive Shell
🔗 References (17)
- selfhttps://access.redhat.com/errata/RHSA-2026:7519
- externalhttps://images.redhat.com/
- externalhttps://access.redhat.com/security/cve/CVE-2025-32415
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://access.redhat.com/security/cve/CVE-2025-32414
- externalhttps://access.redhat.com/security/cve/CVE-2025-6170
- externalhttps://access.redhat.com/security/cve/CVE-2025-6021
- externalhttps://access.redhat.com/security/cve/CVE-2025-49796
- externalhttps://access.redhat.com/security/cve/CVE-2025-49795
- externalhttps://access.redhat.com/security/cve/CVE-2025-49794
- externalhttps://access.redhat.com/security/cve/CVE-2025-9714
- externalhttps://access.redhat.com/security/cve/CVE-2025-26434
- externalhttps://access.redhat.com/security/cve/CVE-2026-0992
- externalhttps://access.redhat.com/security/cve/CVE-2026-0990
- externalhttps://access.redhat.com/security/cve/CVE-2026-0989
- externalhttps://access.redhat.com/security/cve/CVE-2026-1757
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_7519.json