关键漏洞信息 漏洞概述 公告编号: RHSA-2025:12098 类型/严重性: 重要安全更新 发布日期: 2025-07-29 更新日期: 2025-07-29 影响的产品 Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.6 x86_64 Red Hat Enterprise Linux Server - AUS 8.6 x86_64 Red Hat Enterprise Linux Server - TUS 8.6 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.6 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.6 x86_64 漏洞详情 CVE-2025-32414: libxml2: Out-of-Bounds Read in libxml2 CVE-2025-49794: libxml2: Heap use after free (UAF) leads to Denial of service (DoS) CVE-2025-49796: libxml2: Type confusion leads to Denial of service (DoS) CVE-2025-6021: libxml2: Integer Overflow in xmlBuildQName() Leads to Stack Buffer Overflow in libxml2 解决方案 参考链接: https://access.redhat.com/articles/11250 相关CVEs CVE-2025-6021 CVE-2025-32414 CVE-2025-49794 CVE-2025-49796 参考资料 Red Hat 安全更新分类