CVE-2025-49796
Red Hat Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 7 Extended Lifecycle Support, Red Hat Enterprise Linux 8
A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory corruption issue. This flaw allows an attacker to craft a malicious XML input file that can lead libxml to crash, resulting in a denial of service or other possible undefined behavior due to sensitive data being corrupted in memory.
- CVSS
- 9.1
- EPSS
- 1.51% 71.9% percentile
- CISA KEV
- Not listed
- Published
- 2025.06.17