========================================================================= Ubuntu Security Notice USN-7467-2 April 28, 2025 libxml2 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Several security issues were fixed in libxml2. Software Description: - libxml2: GNOME XML library Details: USN-7467-1 fixed several vulnerabilities in libxml2. This update provides the corresponding update for Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. Original advisory details: It was discovered that the libxml2 Python bindings incorrectly handled certain return values. An attacker could possibly use this issue to cause libxml2 to crash, resulting in a denial of service. (CVE-2025-32414) It was discovered that libxml2 incorrectly handled certain memory operations. A remote attacker could possibly use this issue to cause libxml2 to crash, resulting in a denial of service. (CVE-2025-32415) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS libxml2 2.9.4+dfsg1-6.1ubuntu1.9+esm3 Available with Ubuntu Pro python-libxml2 2.9.4+dfsg1-6.1ubuntu1.9+esm3 Available with Ubuntu Pro python3-libxml2 2.9.4+dfsg1-6.1ubuntu1.9+esm3 Available with Ubuntu Pro Ubuntu 16.04 LTS libxml2 2.9.3+dfsg1-1ubuntu0.7+esm8 Available with Ubuntu Pro python-libxml2 2.9.3+dfsg1-1ubuntu0.7+esm8 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7467-2 https://ubuntu.com/security/notices/USN-7467-1 CVE-2025-32414, CVE-2025-32415