CVE-2024-56171
published 2025-02-18CVE-2024-56171: libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit…
PriorityP350critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.14%
63.2th percentile
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be validated against an XML schema with certain identity constraints, or a crafted XML schema must be used.
Affected
26 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_18.4_and_ipados | — | — |
| apple | ipados | — | — |
| apple | macos_sequoia | — | — |
| apple | macos_sonoma | — | — |
| apple | macos_ventura | — | — |
| apple | tvos | — | — |
| apple | visionos | — | — |
| apple | watchos | — | — |
| debian | libxml2 | < libxml2 2.9.14+dfsg-1.3~deb12u2 (bookworm) | libxml2 2.9.14+dfsg-1.3~deb12u2 (bookworm) |
| msrc | azl3_libxml2_2.11.5-4_on_azure_linux_3.0 | — | — |
| msrc | azl3_libxml2_2.11.5-5_on_azure_linux_3.0 | — | — |
| msrc | cbl2_libxml2_2.10.4-6_on_cbl_mariner_2.0 | — | — |
| netapp | ontap | — | — |
| nokogiri | nokogiri | >= 0 < 1.18.3 | 1.18.3 |
| xmlsoft | libxml2 | < 2.12.10 | 2.12.10 |
| xmlsoft | libxml2 | >= 0 < 2.9.10+dfsg-6.7+deb11u6 | 2.9.10+dfsg-6.7+deb11u6 |
| xmlsoft | libxml2 | >= 0 < 2.9.14+dfsg-1.3~deb12u2 | 2.9.14+dfsg-1.3~deb12u2 |
| xmlsoft | libxml2 | >= 0 < 2.12.7+dfsg+really2.9.14-0.4 | 2.12.7+dfsg+really2.9.14-0.4 |
| xmlsoft | libxml2 | >= 0 < 2.12.7+dfsg+really2.9.14-0.4 | 2.12.7+dfsg+really2.9.14-0.4 |
| xmlsoft | libxml2 | >= 0 < 2.9.10+dfsg-5ubuntu0.20.04.9 | 2.9.10+dfsg-5ubuntu0.20.04.9 |
| xmlsoft | libxml2 | >= 0 < 2.9.13+dfsg-1ubuntu0.6 | 2.9.13+dfsg-1ubuntu0.6 |
| xmlsoft | libxml2 | >= 0 < 2.9.14+dfsg-1.3ubuntu3.2 | 2.9.14+dfsg-1.3ubuntu3.2 |
| xmlsoft | libxml2 | >= 0 < 2.9.1+dfsg1-3ubuntu4.13+esm7 | 2.9.1+dfsg1-3ubuntu4.13+esm7 |
| xmlsoft | libxml2 | >= 0 < 2.9.3+dfsg1-1ubuntu0.7+esm7 | 2.9.3+dfsg1-1ubuntu0.7+esm7 |
| xmlsoft | libxml2 | >= 0 < 2.9.4+dfsg1-6.1ubuntu1.9+esm2 | 2.9.4+dfsg1-6.1ubuntu1.9+esm2 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
ghsa9.8CRITICAL
osv9.8CRITICAL
vendor_ubuntu8.1HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2025-31182: watchOS 11.4
vendor_apple·2025-04-01·CVSS 7.8
CVE-2025-31182 [HIGH] CVE-2025-31182: watchOS 11.4
Apple Security Update: About the security content of watchOS 11.4
Product: watchOS
Version: 11.4
CVE: CVE-2025-31182
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2024-56171: watchOS 11.4
vendor_apple·2025-04-01·CVSS 7.8
CVE-2024-56171 [HIGH] CVE-2024-56171: watchOS 11.4
Apple Security Update: About the security content of watchOS 11.4
Product: watchOS
Version: 11.4
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24238: watchOS 11.4
vendor_apple·2025-04-01·CVSS 7.8
CVE-2025-24238 [HIGH] CVE-2025-24238: watchOS 11.4
Apple Security Update: About the security content of watchOS 11.4
Product: watchOS
Version: 11.4
CVE: CVE-2025-24238
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24178: watchOS 11.4
vendor_apple·2025-04-01·CVSS 7.8
CVE-2025-24178 [HIGH] CVE-2025-24178: watchOS 11.4
Apple Security Update: About the security content of watchOS 11.4
Product: watchOS
Version: 11.4
CVE: CVE-2025-24178
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2024-56171: iOS 18.4 and iPadOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-56171 [HIGH] CVE-2024-56171: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-31182: macOS Sequoia 15.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-31182 [HIGH] CVE-2025-31182: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-31182
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24238: macOS Ventura 13.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24238 [HIGH] CVE-2025-24238: macOS Ventura 13.7.5
Apple Security Update: About the security content of macOS Ventura 13.7.5
Product: macOS Ventura
Version: 13.7.5
CVE: CVE-2025-24238
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24178: tvOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24178 [HIGH] CVE-2025-24178: tvOS 18.4
Apple Security Update: About the security content of tvOS 18.4
Product: tvOS
Version: 18.4
CVE: CVE-2025-24178
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24178: iPadOS 17.7.6
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24178 [HIGH] CVE-2025-24178: iPadOS 17.7.6
Apple Security Update: About the security content of iPadOS 17.7.6
Product: iPadOS
Version: 17.7.6
CVE: CVE-2025-24178
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24238: iOS 18.4 and iPadOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24238 [HIGH] CVE-2025-24238: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24238
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24178: macOS Sequoia 15.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24178 [HIGH] CVE-2025-24178: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-24178
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2024-56171: macOS Ventura 13.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-56171 [HIGH] CVE-2024-56171: macOS Ventura 13.7.5
Apple Security Update: About the security content of macOS Ventura 13.7.5
Product: macOS Ventura
Version: 13.7.5
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2024-56171: iPadOS 17.7.6
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-56171 [HIGH] CVE-2024-56171: iPadOS 17.7.6
Apple Security Update: About the security content of iPadOS 17.7.6
Product: iPadOS
Version: 17.7.6
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2024-56171: macOS Sequoia 15.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-56171 [HIGH] CVE-2024-56171: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-31264: macOS Ventura 13.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-31264 [HIGH] CVE-2025-31264: macOS Ventura 13.7.5
Apple Security Update: About the security content of macOS Ventura 13.7.5
Product: macOS Ventura
Version: 13.7.5
CVE: CVE-2025-31264
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-31264: macOS Sonoma 14.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-31264 [HIGH] CVE-2025-31264: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31264
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24178: macOS Ventura 13.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24178 [HIGH] CVE-2025-24178: macOS Ventura 13.7.5
Apple Security Update: About the security content of macOS Ventura 13.7.5
Product: macOS Ventura
Version: 13.7.5
CVE: CVE-2025-24178
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-31182: macOS Ventura 13.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-31182 [HIGH] CVE-2025-31182: macOS Ventura 13.7.5
Apple Security Update: About the security content of macOS Ventura 13.7.5
Product: macOS Ventura
Version: 13.7.5
CVE: CVE-2025-31182
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24178: macOS Sonoma 14.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24178 [HIGH] CVE-2025-24178: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24178
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2024-56171: tvOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-56171 [HIGH] CVE-2024-56171: tvOS 18.4
Apple Security Update: About the security content of tvOS 18.4
Product: tvOS
Version: 18.4
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2024-56171: visionOS 2.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-56171 [HIGH] CVE-2024-56171: visionOS 2.4
Apple Security Update: About the security content of visionOS 2.4
Product: visionOS
Version: 2.4
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to delete files for which it does not have permission
Description: This issue was addressed with improved handling of symlinks.
Apple
CVE-2025-31182: macOS Sonoma 14.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-31182 [HIGH] CVE-2025-31182: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31182
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24238: macOS Sonoma 14.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24238 [HIGH] CVE-2025-24238: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24238
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2024-56171: macOS Sonoma 14.7.5
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-56171 [HIGH] CVE-2024-56171: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24238: macOS Sequoia 15.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24238 [HIGH] CVE-2025-24238: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-24238
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-31182: tvOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-31182 [HIGH] CVE-2025-31182: tvOS 18.4
Apple Security Update: About the security content of tvOS 18.4
Product: tvOS
Version: 18.4
CVE: CVE-2025-31182
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-31182: visionOS 2.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-31182 [HIGH] CVE-2025-31182: visionOS 2.4
Apple Security Update: About the security content of visionOS 2.4
Product: visionOS
Version: 2.4
CVE: CVE-2025-31182
Component: CVE-2024-56171
Impact: An app may be able to delete files for which it does not have permission
Description: This issue was addressed with improved handling of symlinks.
Apple
CVE-2025-31182: iOS 18.4 and iPadOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-31182 [HIGH] CVE-2025-31182: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-31182
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24238: tvOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24238 [HIGH] CVE-2025-24238: tvOS 18.4
Apple Security Update: About the security content of tvOS 18.4
Product: tvOS
Version: 18.4
CVE: CVE-2025-24238
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Apple
CVE-2025-24178: iOS 18.4 and iPadOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24178 [HIGH] CVE-2025-24178: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24178
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
Ubuntu
libxml2 vulnerabilities
vendor_ubuntu·2025-02-25·CVSS 8.1
CVE-2022-49043 [HIGH] libxml2 vulnerabilities
Title: libxml2 vulnerabilities
Summary: Several security issues were fixed in libxml2.
It was discovered that libxml2 incorrectly handled certain memory
operations. A remote attacker could use this issue to cause libxml2 to
crash, resulting in a denial of service, or possibly execute arbitrary
code. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and
Ubuntu 18.04 LTS. (CVE-2022-49043)
It was discovered that the libxml2 xmllint tool incorrectly handled
certain memory operations. If a user or automated system were tricked into
running xmllint on a specially crafted xml file, a remote attacker could
cause xmllint to crash, resulting in a denial of service. This issue only
affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 18.04 LTS.
(CVE-2024-34459)
It was discovered tha
Red Hat
libxml2: Use-After-Free in libxml2
vendor_redhat·2025-02-18·CVSS 7.8
CVE-2024-56171 [HIGH] CWE-416 libxml2: Use-After-Free in libxml2
libxml2: Use-After-Free in libxml2
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be validated against an XML schema with certain identity constraints, or a crafted XML schema must be used.
A flaw was found in libxml2. This vulnerability allows a use-after-free via a crafted XML document validated against an XML schema with certain identity constraints or a crafted XML schema.
Statement: This vulnerability is rated as important because it involves a use-after-free flaw in the xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables functions. A maliciously crafted XML document or schema, containing specific identity constraints, can be use
Microsoft
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be val
vendor_msrc·2025-02-11·CVSS 7.8
CVE-2024-56171 [HIGH] CWE-416 libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be val
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be validated against an XML schema with certain identity constraints, or a crafted XML schema must be used.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See th
Debian
CVE-2024-56171: libxml2 - libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchem...
vendor_debian·2024·CVSS 7.8
CVE-2024-56171 [HIGH] CVE-2024-56171: libxml2 - libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchem...
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be validated against an XML schema with certain identity constraints, or a crafted XML schema must be used.
Scope: local
bookworm: resolved (fixed in 2.9.14+dfsg-1.3~deb12u2)
bullseye: resolved (fixed in 2.9.10+dfsg-6.7+deb11u6)
forky: resolved (fixed in 2.12.7+dfsg+really2.9.14-0.4)
sid: resolved (fixed in 2.12.7+dfsg+really2.9.14-0.4)
trixie: resolved (fixed in 2.12.7+dfsg+really2.9.14-0.4)
OSV
libxml2 vulnerabilities
osv·2025-02-25·CVSS 7.8
CVE-2022-49043 [HIGH] libxml2 vulnerabilities
libxml2 vulnerabilities
It was discovered that libxml2 incorrectly handled certain memory
operations. A remote attacker could use this issue to cause libxml2 to
crash, resulting in a denial of service, or possibly execute arbitrary
code. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and
Ubuntu 18.04 LTS. (CVE-2022-49043)
It was discovered that the libxml2 xmllint tool incorrectly handled
certain memory operations. If a user or automated system were tricked into
running xmllint on a specially crafted xml file, a remote attacker could
cause xmllint to crash, resulting in a denial of service. This issue only
affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 18.04 LTS.
(CVE-2024-34459)
It was discovered that libxml2 did not properly manage memory. An attacker
could poss
GHSA
GHSA-m366-8h8r-6fqr: libxml2 before 2
ghsa_unreviewed·2025-02-19
CVE-2024-56171 [HIGH] CWE-416 GHSA-m366-8h8r-6fqr: libxml2 before 2
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be validated against an XML schema with certain identity constraints, or a crafted XML schema must be used.
OSV
Duplicate Advisory: Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
osv·2025-02-19·CVSS 9.8
CVE-2025-24928 [CRITICAL] Duplicate Advisory: Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
Duplicate Advisory: Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
# Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-vvfq-8hwr-qm4m. This link is maintained to preserve external references.
# Original Description
## Summary
Nokogiri v1.18.3 upgrades its dependency libxml2 to
[v2.13.6](https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.13.6).
libxml2 v2.13.6 addresses:
- CVE-2025-24928
- described at https://gitlab.gnome.org/GNOME/libxml2/-/issues/847
- CVE-2024-56171
- described at https://gitlab.gnome.org/GNOME/libxml2/-/issues/828
## Impact
### CVE-2025-24928
Stack-buffer overflow is possible when reporting DTD validation
errors if the input contains a long (~3kb) QName prefix.
### CVE-2024-56171
GHSA
Duplicate Advisory: Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
ghsa·2025-02-19·CVSS 9.8
CVE-2025-24928 [CRITICAL] CWE-1395 Duplicate Advisory: Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
Duplicate Advisory: Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
# Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-vvfq-8hwr-qm4m. This link is maintained to preserve external references.
# Original Description
## Summary
Nokogiri v1.18.3 upgrades its dependency libxml2 to
[v2.13.6](https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.13.6).
libxml2 v2.13.6 addresses:
- CVE-2025-24928
- described at https://gitlab.gnome.org/GNOME/libxml2/-/issues/847
- CVE-2024-56171
- described at https://gitlab.gnome.org/GNOME/libxml2/-/issues/828
## Impact
### CVE-2025-24928
Stack-buffer overflow is possible when reporting DTD validation
errors if the input contains a long (~3kb) QName prefix.
### CVE-2024-56171
GHSA
Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
ghsa·2025-02-18·CVSS 9.8
CVE-2025-24928 [CRITICAL] CWE-121 Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
## Summary
Nokogiri v1.18.3 upgrades its dependency libxml2 to [v2.13.6](https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.13.6).
libxml2 v2.13.6 addresses:
- CVE-2025-24928
- described at https://gitlab.gnome.org/GNOME/libxml2/-/issues/847
- CVE-2024-56171
- described at https://gitlab.gnome.org/GNOME/libxml2/-/issues/828
## Impact
### CVE-2025-24928
Stack-buffer overflow is possible when reporting DTD validation errors if the input contains a long (~3kb) QName prefix.
### CVE-2024-56171
Use-after-free is possible during validation against untrusted XML Schemas (.xsd) and, potentially, validation of untrusted documents against trusted Schemas if they make use of `xsd:keyref` in combination
OSV
Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
osv·2025-02-18·CVSS 9.8
CVE-2025-24928 [CRITICAL] Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
Nokogiri updates packaged libxml2 to 2.13.6 to resolve CVE-2025-24928 and CVE-2024-56171
## Summary
Nokogiri v1.18.3 upgrades its dependency libxml2 to [v2.13.6](https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.13.6).
libxml2 v2.13.6 addresses:
- CVE-2025-24928
- described at https://gitlab.gnome.org/GNOME/libxml2/-/issues/847
- CVE-2024-56171
- described at https://gitlab.gnome.org/GNOME/libxml2/-/issues/828
## Impact
### CVE-2025-24928
Stack-buffer overflow is possible when reporting DTD validation errors if the input contains a long (~3kb) QName prefix.
### CVE-2024-56171
Use-after-free is possible during validation against untrusted XML Schemas (.xsd) and, potentially, validation of untrusted documents against trusted Schemas if they make use of `xsd:keyref` in combination
OSV
CVE-2024-56171: libxml2 before 2
osv·2025-02-18·CVSS 9.8
CVE-2024-56171 [CRITICAL] CVE-2024-56171: libxml2 before 2
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be validated against an XML schema with certain identity constraints, or a crafted XML schema must be used.
No detection rules found.
No public exploits indexed.
https://gitlab.gnome.org/GNOME/libxml2/-/issues/828http://seclists.org/fulldisclosure/2025/Apr/10http://seclists.org/fulldisclosure/2025/Apr/11http://seclists.org/fulldisclosure/2025/Apr/12http://seclists.org/fulldisclosure/2025/Apr/13http://seclists.org/fulldisclosure/2025/Apr/4http://seclists.org/fulldisclosure/2025/Apr/5http://seclists.org/fulldisclosure/2025/Apr/8http://seclists.org/fulldisclosure/2025/Apr/9https://lists.debian.org/debian-lts-announce/2025/02/msg00028.htmlhttps://security.netapp.com/advisory/ntap-20250328-0010/
2025-02-18
Published