Improper Resource Shutdown or Release
CVE-2025-8732
Summary
A vulnerability was found in libxml2 up to 2.14.5. It has been declared as problematic. This vulnerability affects the function 'xmlParseSGMLCatalog' of the component 'xmlcatalog'. The manipulation leads to uncontrolled recursion. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The real existence of this vulnerability is still doubted at the moment.
- LOW
- LOCAL
- NONE
- UNCHANGED
- NONE
- LOW
- NONE
- LOW
CWE-404 - Improper Resource Shutdown or Release
The program does not release or incorrectly releases a resource before it is made available for re-use.
Advisory Timeline
- Published