libxml2: Multiple Vulnerabilities Multiple denial of service vulnerabilities have been found in libxml2. libxml2 2024-02-09 2024-02-09 904202 905399 915351 923806 remote 2.12.5 2.12.5

libxml2 is the XML C parser and toolkit developed for the GNOME project.

Multiple vulnerabilities have been discovered in libxml2. Please review the CVE identifiers referenced below for details.

Please review the referenced CVE identifiers for details.

There is no known workaround at this time.

All libxml2 users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-libs/libxml2-2.12.5"

If you cannot update to libxml2-2.12 yet you can update to the latest 2.11 version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-libs/libxml2-2.11.7 =dev-libs/libxml2-2.11*"
CVE-2023-28484 CVE-2023-29469 CVE-2023-45322 CVE-2024-25062 ajak graaff