CVE-2026-86142 In libxml2 before 2.15.4, there is a heap-based buffer… — CVE Notify — TG.ME

🚨 CVE-2026-86142
In libxml2 before 2.15.4, there is a heap-based buffer overflow in xmlXPtrEvalXPtrPart because of xmlXPtrEval xpointer length saturation.

🎖@cveNotify
GitHub
xpointer: Check overflow in xmlXPtrEvalXPtrPart · GNOME/libxml2@6b3a736
Fix https://gitlab.gnome.org/GNOME/libxml2/-/work_items/1113
September 5, 2026 38