Security Advisory

CVE-2026-6653

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-22 12:40:31
Last updated 2026-06-22 15:51:11
Assigner canonical
CVSS score 7.0
State PUBLISHED

Description

Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2.9.11 to 2.11.0 allows a remote attacker to cause a denial-of-service via maliciously crafted XML input with improper entity resolution handling.