ELA-1195-1 libxml2 security update

XML External Entity attack

2024-10-03
Packagelibxml2
Version2.9.4+dfsg1-7+deb10u8 (buster)
Related CVEs CVE-2016-9318


An XML External Entity (XXE) attack via crafted documents has been fixed in the XML library libxml2.



For Debian 10 buster, these problems have been fixed in version 2.9.4+dfsg1-7+deb10u8.

We recommend that you upgrade your libxml2 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.