Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2009-2416

23
FAUCET Score

CVE-2009-2416 describes multiple use-after-free vulnerabilities in various versions of libxml2 and libxml, affecting numerous products including Apple, Canonical, Debian, Google, and Red Hat. Attackers can exploit these flaws by crafting malicious XML files containing specific Notation or Enumeration attribute types, leading to a denial of service through application crashes. Rated as MEDIUM severity (CVSS 6.5), this vulnerability requires user interaction (UI:R) and has a high impact on availability (A:H), but does not affect confidentiality or integrity. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
1.8.17CPE matchmatch criteria
cpe:2.3:a:xmlsoft:libxml:1.8.17:*:*:*:*:*:*:*
2.5.10CPE matchmatch criteria
cpe:2.3:a:xmlsoft:libxml2:2.5.10:*:*:*:*:*:*:*
2.6.16CPE matchmatch criteria
cpe:2.3:a:xmlsoft:libxml2:2.6.16:*:*:*:*:*:*:*
2.6.26CPE matchmatch criteria
cpe:2.3:a:xmlsoft:libxml2:2.6.26:*:*:*:*:*:*:*
2.6.27CPE matchmatch criteria
cpe:2.3:a:xmlsoft:libxml2:2.6.27:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

6.5MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
2.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
1.81%
Probability of exploitation in next 30 days
EPSS Percentile
76.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
This CVE's current EPSS score of 0.0181 is in the 88th percentile among its peer group of 26,219 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (13)

debianpatch availablevia nvd_reference
View patch
denopatch availablevia llm_extracted
Fixed in: 3.1.1
View patch
denopatch availablevia llm_extracted
Fixed in: 2.4.3
View patch
libreofficepatch availablevia llm_extracted
Fixed in: 2.4.3
View patch
libreofficepatch availablevia llm_extracted
Fixed in: 3.1.1
View patch
nessuspatch availablevia llm_extracted
Fixed in: 3.1.1
postgresqlpatch availablevia llm_extracted
Fixed in: 2.4.3
View patch
postgresqlpatch availablevia llm_extracted
Fixed in: 3.1.1
View patch
redhatpatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: libxml2-0:2.6.26-2.1.2.8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 3Fixed in: libxml2-0:2.5.10-15
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 3Fixed in: libxml-1:1.8.17-9.3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4Fixed in: libxml2-0:2.6.16-12.7
View patch

Vendor Advisories (5)

redhatCVE-2009-2416Low

mingw32-libxml2: Pointer use-after-free flaws by parsing Notation and Enumeration attribute types

Aug 10, 2009
denollm-deno-7d5d7f9a1d7396e4

Manipulated XML documents can lead to arbitrary code execution

postgresqlllm-postgresql-6ea8630e811ae3c8

Manipulated XML documents can lead to arbitrary code execution

libreofficellm-libreoffice-23dd6b0df537c565

Manipulated XML documents can lead to arbitrary code execution

nessusllm-nessus-f95bc72128810fdc

Manipulated XML documents can lead to arbitrary code execution

References

googlechromereleases.blogspot.com / 2009/08/stable-update-security-fixes.html
Release Notes
lists.apple.com / archives/security-announce/2009/Nov/msg00000.html
Mailing List
lists.apple.com / archives/security-announce/2009/Nov/msg00001.html
Mailing List
lists.apple.com / archives/security-announce/2010/Jun/msg00003.html
Mailing List
lists.opensuse.org / opensuse-security-announce/2009-09/msg00001.html
Mailing List
bugzilla.redhat.com / show_bug.cgi
Issue TrackingPatch
secunia.com / advisories/35036
Broken Link
secunia.com / advisories/36207
Broken Link
secunia.com / advisories/36338
Broken Link
secunia.com / advisories/36417
Broken Link
secunia.com / advisories/36631
Broken Link
secunia.com / advisories/37346
Broken Link
secunia.com / advisories/37471
Broken Link
git.gnome.org / browse/libxml2/commit
Patch
oval.cisecurity.org / repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7783
Broken Link
oval.cisecurity.org / repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9262
Broken Link
support.apple.com / kb/HT3937
Third Party Advisory
support.apple.com / kb/HT3949
Third Party Advisory
support.apple.com / kb/HT4225
Third Party Advisory
redhat.com / archives/fedora-package-announce/2009-August/msg00537.html
Mailing List
redhat.com / archives/fedora-package-announce/2009-August/msg00547.html
Mailing List
redhat.com / archives/fedora-package-announce/2009-August/msg00642.html
Mailing List
cert.fi / en/reports/2009/vulnerability2009085.html
Broken Link
codenomicon.com / labs/xml
Broken Link
debian.org / security/2009/dsa-1859
Mailing ListPatch
mail-archive.com / debian-bugs-dist%40lists.debian.org/msg678527.html
Patch
networkworld.com / columnists/2009/080509-xml-flaw.html
Broken Link
openoffice.org / security/cves/CVE-2009-2414-2416.html
Third Party Advisory
securityfocus.com / archive/1/507985/100/0/threaded
Broken LinkThird Party AdvisoryVDB Entry
securityfocus.com / bid/36010
Broken LinkThird Party AdvisoryVDB Entry
ubuntu.com / usn/USN-815-1
Third Party Advisory
vmware.com / security/advisories/VMSA-2009-0016.html
Third Party Advisory
vupen.com / english/advisories/2009/2420
Broken Link
vupen.com / english/advisories/2009/3184
Broken Link
vupen.com / english/advisories/2009/3217
Broken Link
vupen.com / english/advisories/2009/3316
Broken Link