[Git][security-tracker-team/security-tracker][master] track libxml2 fixes from stable-pu

Aron Xu (@aron) aron at debian.org
Wed Jul 8 12:56:12 BST 2026



Aron Xu pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6502cfec by Aron Xu at 2026-07-08T19:55:59+08:00
track libxml2 fixes from stable-pu

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -92424,6 +92424,7 @@ CVE-2026-1760 (A flaw was found in SoupServer. This HTTP request smuggling vulne
 CVE-2026-1757 (A flaw was identified in the interactive shell of the xmllint utility, ...)
 	{DLA-4622-1}
 	- libxml2 2.15.2+dfsg-0.1 (unimportant)
+	[trixie] - libxml2 2.12.7+dfsg+really2.9.14-2.1+deb13u3 (Minor issue)
 	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/issues/1009
 	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/libxml2/-/commit/160c8a43ba37dfb07ebe6446fbad9d0973d9279d
 	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/libxml2/-/commit/5446460ad3229579c91506317fb80ab333d44414 (v2.15.2)
@@ -98792,7 +98793,7 @@ CVE-2026-20047 (A vulnerability in the web-based management interface of Cisco I
 CVE-2026-0992 (A flaw was found in the libxml2 library. This uncontrolled resource co ...)
 	{DLA-4622-1}
 	- libxml2 2.15.2+dfsg-0.1 (bug #1125696)
-	[trixie] - libxml2 <no-dsa> (Minor issue)
+	[trixie] - libxml2 2.12.7+dfsg+really2.9.14-2.1+deb13u3 (Minor issue)
 	[bookworm] - libxml2 <no-dsa> (Minor issue)
 	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/issues/1019
 	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/libxml2/-/commit/f75abfcaa419a740a3191e56c60400f3ff18988d
@@ -98804,7 +98805,7 @@ CVE-2026-0992 (A flaw was found in the libxml2 library. This uncontrolled resour
 CVE-2026-0990 (A flaw was found in libxml2, an XML parsing library. This uncontrolled ...)
 	{DLA-4622-1}
 	- libxml2 2.15.2+dfsg-0.1 (bug #1125695)
-	[trixie] - libxml2 <no-dsa> (Minor issue)
+	[trixie] - libxml2 2.12.7+dfsg+really2.9.14-2.1+deb13u3 (Minor issue)
 	[bookworm] - libxml2 <no-dsa> (Minor issue)
 	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/issues/1018
 	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/libxml2/-/commit/1961208e958ca22f80a0b4e4c9d71cfa050aa982
@@ -98814,7 +98815,7 @@ CVE-2026-0990 (A flaw was found in libxml2, an XML parsing library. This uncontr
 CVE-2026-0989 (A flaw was identified in the RelaxNG parser of libxml2 related to how  ...)
 	{DLA-4622-1}
 	- libxml2 2.15.2+dfsg-0.1 (bug #1125691)
-	[trixie] - libxml2 <no-dsa> (Minor issue)
+	[trixie] - libxml2 2.12.7+dfsg+really2.9.14-2.1+deb13u3 (Minor issue)
 	[bookworm] - libxml2 <no-dsa> (Minor issue)
 	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/issues/998
 	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/merge_requests/374
@@ -158937,6 +158938,7 @@ CVE-2025-8733
 CVE-2025-8732 (A vulnerability was found in libxml2 up to 2.14.5. It has been declare ...)
 	{DLA-4622-1}
 	- libxml2 2.15.2+dfsg-0.1 (unimportant)
+	[trixie] - libxml2 2.12.7+dfsg+really2.9.14-2.1+deb13u3 (Minor issue)
 	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/issues/958
 	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/issues/958#note_2505853
 	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/libxml2/-/commit/3425dece47c8db600f8d7328ae2d7ddfaa0d7b2d (v2.15.2)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6502cfecee7d3af7ae735dbf769bed710ddaa1a8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6502cfecee7d3af7ae735dbf769bed710ddaa1a8
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260708/c6f4c36d/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list