/
DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2024-56171

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-56171

CGA ID

CGA-rf45-rrj3-g8w8

Severity

Unknown

Description

libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be validated against an XML schema with certain identity constraints, or a crafted XML schema must be used.

References

  • https://images.chainguard.dev/security/CGA-rf45-rrj3-g8w8

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs