CVE Vulnerabilities

CVE-2026-86143

Integer Coercion Error

Published: Sep 05, 2026 | Modified: Sep 15, 2026
CVSS 3.x
7.3
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
CVSS 2.x
RedHat/V2
RedHat/V3
6.9 MODERATE
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

In xmlIO in libxml2 before 2.15.4, an inconsistency in xmlOutputWriteCallback and xmlBufUse causes negative lengths to reach write callbacks, aka a lack of a check for integer overflow before calling writecallback. This has security relevance for many types of uses of that length value within a callback.

Weakness

Integer coercion refers to a set of flaws pertaining to the type casting, extension, or truncation of primitive data types.

Affected Software

NameVendorStart VersionEnd Version
Libxml2Xmlsoft*2.15.4 (excluding)
Red Hat Enterprise Linux 10RedHatlibxml2-0:2.12.5-10.el10_2.4*
Red Hat Enterprise Linux 8RedHatlibxml2-0:2.9.7-21.el8_10.9*
Red Hat Enterprise Linux 8RedHatlibxml2-0:2.9.7-21.el8_10.9*
Red Hat Enterprise Linux 9RedHatlibxml2-0:2.9.13-14.el9_8.5*
Red Hat Enterprise Linux 9RedHatlibxml2-0:2.9.13-14.el9_8.5*
Red Hat Hardened ImagesRedHatlibxml2-main-2.15.4-0.1.hum1*
Libxml2Ubuntuupstream*

Potential Mitigations

References