libxml2 Vulnerabilities Lead to Denial of Service Risks

libxml2 Vulnerabilities Lead to Denial of Service Risks

First seen 23 Jan 2026, 22:10 UTC Ubuntu 18.2

Article Content

Browse articles
ThreatCluster

libxml2 has been found to improperly handle maliciously crafted SGML catalog files and recursive include directories with the RelaxNG parser. These vulnerabilities could allow attackers to cause excessive resource consumption, resulting in denial of service. The identified vulnerabilities are tracked as CVE-2025-8732 and CVE-2026-0989.