CVE-2024-25062

ADVISORY - nist

Summary

An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.12.5. When using the XML Reader interface with DTD validation and XInclude expansion enabled, processing crafted XML documents can lead to an xmlValidatePopElement use-after-free.

EPSS Score: 0.00131 (0.333)

Common Weakness Enumeration (CWE)

ADVISORY - nist

Use After Free

ADVISORY - gitlab

Use After Free

ADVISORY - redhat

Use After Free


Sign in to Docker Scout

See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.

Sign in