{"schema_version":"1.7.2","id":"OESA-2026-1774","modified":"2026-03-27T14:07:51Z","published":"2026-03-27T14:07:51Z","upstream":["CVE-2026-1757"],"summary":"libxml2 security update","details":"This library allows to manipulate XML files. It includes support\nto read, modify and write XML and HTML files. There is DTDs support\nthis includes parsing and validation even with complex DtDs, either\nat parse time or later once the document has been modified. The output\ncan be a simple SAX stream or and in-memory DOM like representations.\nIn this case one can use the built-in XPath and XPointer implementation\nto select sub nodes or ranges. A flexible Input/Output mechanism is\navailable, with existing HTTP and FTP modules and combined to an\nURI library.\r\n\r\n\nSecurity Fix(es):\n\nA flaw was identified in the interactive shell of the xmllint utility, part of the libxml2 project, where memory allocated for user input is not properly released under certain conditions. When a user submits input consisting only of whitespace, the program skips command execution but fails to free the allocated buffer. Repeating this action causes memory to continuously accumulate. Over time, this can exhaust system memory and terminate the xmllint process, creating a denial-of-service condition on the local system.(CVE-2026-1757)","affected":[{"package":{"ecosystem":"openEuler:24.03-LTS-SP3","name":"libxml2","purl":"pkg:rpm/openEuler/libxml2&distro=openEuler-24.03-LTS-SP3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.11.9-13.oe2403sp3"}]}],"ecosystem_specific":{"aarch64":["libxml2-2.11.9-13.oe2403sp3.aarch64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp3.aarch64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp3.aarch64.rpm","libxml2-devel-2.11.9-13.oe2403sp3.aarch64.rpm","python3-libxml2-2.11.9-13.oe2403sp3.aarch64.rpm"],"noarch":["libxml2-help-2.11.9-13.oe2403sp3.noarch.rpm"],"src":["libxml2-2.11.9-13.oe2403sp3.src.rpm"],"x86_64":["libxml2-2.11.9-13.oe2403sp3.x86_64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp3.x86_64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp3.x86_64.rpm","libxml2-devel-2.11.9-13.oe2403sp3.x86_64.rpm","python3-libxml2-2.11.9-13.oe2403sp3.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:20.03-LTS-SP4","name":"libxml2","purl":"pkg:rpm/openEuler/libxml2&distro=openEuler-20.03-LTS-SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.9.10-56.oe2003sp4"}]}],"ecosystem_specific":{"aarch64":["libxml2-2.9.10-56.oe2003sp4.aarch64.rpm","libxml2-debuginfo-2.9.10-56.oe2003sp4.aarch64.rpm","libxml2-debugsource-2.9.10-56.oe2003sp4.aarch64.rpm","libxml2-devel-2.9.10-56.oe2003sp4.aarch64.rpm","python2-libxml2-2.9.10-56.oe2003sp4.aarch64.rpm","python3-libxml2-2.9.10-56.oe2003sp4.aarch64.rpm"],"noarch":["libxml2-help-2.9.10-56.oe2003sp4.noarch.rpm"],"src":["libxml2-2.9.10-56.oe2003sp4.src.rpm"],"x86_64":["libxml2-2.9.10-56.oe2003sp4.x86_64.rpm","libxml2-debuginfo-2.9.10-56.oe2003sp4.x86_64.rpm","libxml2-debugsource-2.9.10-56.oe2003sp4.x86_64.rpm","libxml2-devel-2.9.10-56.oe2003sp4.x86_64.rpm","python2-libxml2-2.9.10-56.oe2003sp4.x86_64.rpm","python3-libxml2-2.9.10-56.oe2003sp4.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:22.03-LTS-SP4","name":"libxml2","purl":"pkg:rpm/openEuler/libxml2&distro=openEuler-22.03-LTS-SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.9.14-27.oe2203sp4"}]}],"ecosystem_specific":{"aarch64":["libxml2-2.9.14-27.oe2203sp4.aarch64.rpm","libxml2-debuginfo-2.9.14-27.oe2203sp4.aarch64.rpm","libxml2-debugsource-2.9.14-27.oe2203sp4.aarch64.rpm","libxml2-devel-2.9.14-27.oe2203sp4.aarch64.rpm","python3-libxml2-2.9.14-27.oe2203sp4.aarch64.rpm"],"noarch":["libxml2-help-2.9.14-27.oe2203sp4.noarch.rpm"],"src":["libxml2-2.9.14-27.oe2203sp4.src.rpm"],"x86_64":["libxml2-2.9.14-27.oe2203sp4.x86_64.rpm","libxml2-debuginfo-2.9.14-27.oe2203sp4.x86_64.rpm","libxml2-debugsource-2.9.14-27.oe2203sp4.x86_64.rpm","libxml2-devel-2.9.14-27.oe2203sp4.x86_64.rpm","python3-libxml2-2.9.14-27.oe2203sp4.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:24.03-LTS","name":"libxml2","purl":"pkg:rpm/openEuler/libxml2&distro=openEuler-24.03-LTS"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.11.9-13.oe2403sp2"}]}],"ecosystem_specific":{"aarch64":["libxml2-2.11.9-13.oe2403sp3.aarch64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp3.aarch64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp3.aarch64.rpm","libxml2-devel-2.11.9-13.oe2403sp3.aarch64.rpm","python3-libxml2-2.11.9-13.oe2403sp3.aarch64.rpm","libxml2-2.11.5-16.oe2403.aarch64.rpm","libxml2-debuginfo-2.11.5-16.oe2403.aarch64.rpm","libxml2-debugsource-2.11.5-16.oe2403.aarch64.rpm","libxml2-devel-2.11.5-16.oe2403.aarch64.rpm","python3-libxml2-2.11.5-16.oe2403.aarch64.rpm","libxml2-2.11.9-13.oe2403sp1.aarch64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp1.aarch64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp1.aarch64.rpm","libxml2-devel-2.11.9-13.oe2403sp1.aarch64.rpm","python3-libxml2-2.11.9-13.oe2403sp1.aarch64.rpm","libxml2-2.11.9-13.oe2403sp2.aarch64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp2.aarch64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp2.aarch64.rpm","libxml2-devel-2.11.9-13.oe2403sp2.aarch64.rpm","python3-libxml2-2.11.9-13.oe2403sp2.aarch64.rpm"],"noarch":["libxml2-help-2.11.9-13.oe2403sp3.noarch.rpm","libxml2-help-2.11.5-16.oe2403.noarch.rpm","libxml2-help-2.11.9-13.oe2403sp1.noarch.rpm","libxml2-help-2.11.9-13.oe2403sp2.noarch.rpm"],"src":["libxml2-2.11.9-13.oe2403sp3.src.rpm","libxml2-2.11.5-16.oe2403.src.rpm","libxml2-2.11.9-13.oe2403sp1.src.rpm","libxml2-2.11.9-13.oe2403sp2.src.rpm"],"x86_64":["libxml2-2.11.9-13.oe2403sp3.x86_64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp3.x86_64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp3.x86_64.rpm","libxml2-devel-2.11.9-13.oe2403sp3.x86_64.rpm","python3-libxml2-2.11.9-13.oe2403sp3.x86_64.rpm","libxml2-2.11.5-16.oe2403.x86_64.rpm","libxml2-debuginfo-2.11.5-16.oe2403.x86_64.rpm","libxml2-debugsource-2.11.5-16.oe2403.x86_64.rpm","libxml2-devel-2.11.5-16.oe2403.x86_64.rpm","python3-libxml2-2.11.5-16.oe2403.x86_64.rpm","libxml2-2.11.9-13.oe2403sp1.x86_64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp1.x86_64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp1.x86_64.rpm","libxml2-devel-2.11.9-13.oe2403sp1.x86_64.rpm","python3-libxml2-2.11.9-13.oe2403sp1.x86_64.rpm","libxml2-2.11.9-13.oe2403sp2.x86_64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp2.x86_64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp2.x86_64.rpm","libxml2-devel-2.11.9-13.oe2403sp2.x86_64.rpm","python3-libxml2-2.11.9-13.oe2403sp2.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:24.03-LTS-SP1","name":"libxml2","purl":"pkg:rpm/openEuler/libxml2&distro=openEuler-24.03-LTS-SP1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.11.9-13.oe2403sp1"}]}],"ecosystem_specific":{"aarch64":["libxml2-2.11.9-13.oe2403sp1.aarch64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp1.aarch64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp1.aarch64.rpm","libxml2-devel-2.11.9-13.oe2403sp1.aarch64.rpm","python3-libxml2-2.11.9-13.oe2403sp1.aarch64.rpm"],"noarch":["libxml2-help-2.11.9-13.oe2403sp1.noarch.rpm"],"src":["libxml2-2.11.9-13.oe2403sp1.src.rpm"],"x86_64":["libxml2-2.11.9-13.oe2403sp1.x86_64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp1.x86_64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp1.x86_64.rpm","libxml2-devel-2.11.9-13.oe2403sp1.x86_64.rpm","python3-libxml2-2.11.9-13.oe2403sp1.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:24.03-LTS-SP2","name":"libxml2","purl":"pkg:rpm/openEuler/libxml2&distro=openEuler-24.03-LTS-SP2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.11.9-13.oe2403sp2"}]}],"ecosystem_specific":{"aarch64":["libxml2-2.11.9-13.oe2403sp2.aarch64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp2.aarch64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp2.aarch64.rpm","libxml2-devel-2.11.9-13.oe2403sp2.aarch64.rpm","python3-libxml2-2.11.9-13.oe2403sp2.aarch64.rpm"],"noarch":["libxml2-help-2.11.9-13.oe2403sp2.noarch.rpm"],"src":["libxml2-2.11.9-13.oe2403sp2.src.rpm"],"x86_64":["libxml2-2.11.9-13.oe2403sp2.x86_64.rpm","libxml2-debuginfo-2.11.9-13.oe2403sp2.x86_64.rpm","libxml2-debugsource-2.11.9-13.oe2403sp2.x86_64.rpm","libxml2-devel-2.11.9-13.oe2403sp2.x86_64.rpm","python3-libxml2-2.11.9-13.oe2403sp2.x86_64.rpm"]}}],"references":[{"type":"ADVISORY","url":"https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-1774"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-1757"}],"database_specific":{"severity":"Medium"}}
