A NULL pointer dereference vulnerability was found in libxml2 when processing XPath XML expressions. This flaw allows an attacker to craft a malicious XML input to libxml2, leading to a denial of service.
The product dereferences a pointer that contains a location for memory that was previously valid, but is no longer valid.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | RedHat | libxml2-0:2.12.5-7.el10_0 | * |
| Red Hat JBoss Core Services 2.4.62.SP2 | RedHat | libxml2 | * |
| Libxml2 | Ubuntu | devel | * |
| Libxml2 | Ubuntu | oracular | * |
| Libxml2 | Ubuntu | questing | * |