GNOME 3643 Published by

Libxml2 2.14.2 has been released, addressing several security and compatibility issues. Key updates include fixes for two CVEs, resolved build errors, and additional improvements.



Libxml2 2.14.2 released

https://download.gnome.org/sources/libxml2/2.14/libxml2-2.14.2.tar.xz
sha256sum: 353f3c83535d4224a4e5f1e88c90b5d4563ea8fec11f6407df640fd28fc8b8c6

Screenshot_from_2024_07_25_08_23_22

Security

  • [CVE-2025-32415] schemas: Fix heap buffer overflow in
    xmlSchemaIDCFillNodeTables
  • [CVE-2025-32414] python: Read at most len/4 characters. (Maks Verver)

Build

  • error: Fix initGenericErrorDefaultFunc compatibility macro
  • meson: don’t link with pthreads on Windows (Benjamin Gilbert)
  • cmake, meson: Align Darwin version info with Autotools
  • globals: Fix --with-thread-alloc build
  • meson: ensure relaxng option supports minimum option (Lovell Fuller)

Libxml2 2.14.2 released