CVE-2026-0992Patch(ibm / aix)

LOWCVSS 2.9 · LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch ibm aix systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw was found in the libxml2 library. This uncontrolled resource consumption vulnerability occurs when processing XML catalogs that contain repeated <nextCatalog> elements pointing to the same downstream catalog. A remote attacker can exploit this by supplying crafted catalogs, causing the parser to redundantly traverse catalog chains. This leads to excessive CPU consumption and degrades application availability, resulting in a denial-of-service condition.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-400

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • aix
  • enterprise_linux
  • hardened_images
  • jboss_core_services

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • 1 total mentions across 1 day

Affected systems

Products
aixenterprise_linuxhardened_imagesjboss_core_serviceslibxml2openshift_container_platformvios

9 versions affected across 7 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-23: 1Patch / Workaround · 2026-02-23: 102-23
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • Lambda Watchdog@LambdaWatchdog
    Patch

    🔍 Lambda Watchdog detected that CVE-2026-0992 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/404 #AWS #Lambda #Security #CVE #DevOps #SecOps

    Post summary

    AWS Lambda base images have been updated to remove CVE-2026-0992, indicating the vulnerability has been patched or mitigated.

    0000035
    30 followersView on X
CPE platform detail13 entries

13 of 13 entries

PartVendorProductVersionTarget SWTarget HW
OSibmaix---
OSibmaix7.3.4--
Appibmvios---
Appibmvios4.1.2.0--
OSredhatenterprise_linux10.0--
OSredhatenterprise_linux6.0--
OSredhatenterprise_linux7.0--
OSredhatenterprise_linux8.0--
OSredhatenterprise_linux9.0--
Appredhathardened_images---
Appredhatjboss_core_services---
Appredhatopenshift_container_platform4.0--
Appxmlsoftlibxml2---

Explore more