Skip to main content

Improper Resource Shutdown or Release

CVE-2025-8732

Severity Low
Score 1.9/10

Summary

A vulnerability was found in libxml2 up to 2.14.5. It has been declared as problematic. This vulnerability affects the function 'xmlParseSGMLCatalog' of the component 'xmlcatalog'. The manipulation leads to uncontrolled recursion. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The real existence of this vulnerability is still doubted at the moment.

  • LOW
  • LOCAL
  • NONE
  • UNCHANGED
  • NONE
  • LOW
  • NONE
  • LOW

CWE-404 - Improper Resource Shutdown or Release

The program does not release or incorrectly releases a resource before it is made available for re-use.

Advisory Timeline

  • Published