#VU111223 Type Confusion in Libxml2 - CVE-2025-49796
Published: June 17, 2025 / Updated: July 11, 2025
Libxml2
Gnome Development Team
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a type confusion error within the xmlSchematronFormatReport() function when processing sch:name elements in schematron.c. A remote attacker can pass specially crafted data to the application, trigger a type confusion error and crash the application.