{"schema_version":"1.6.0","id":"ROOT-OS-DEBIAN-13-CVE-2026-86140","modified":"2026-09-21T08:07:03Z","published":"2026-09-21T08:07:03Z","upstream":["CVE-2026-86140"],"summary":"CVE-2026-86140 in libxml2 - Patched by Root","details":"Root has patched CVE-2026-86140 in the libxml2 package for Root:Debian:13. Multiple fixed versions available.","affected":[{"package":{"name":"libxml2","ecosystem":"Root:Debian:13"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.12.7+dfsg+really2.9.14-2.1+deb13u3.aikido.15"},{"fixed":"2.12.7+dfsg+really2.9.14-2.1+deb13u3.aikido.16"}]}],"database_specific":{"all_fixed_versions":["2.12.7+dfsg+really2.9.14-2.1+deb13u3.aikido.15","2.12.7+dfsg+really2.9.14-2.1+deb13u3.aikido.16"],"root_patch_version":"aikido.16","root_patched":true,"total_fixed_versions":2,"upstream_version":"2.12.7+dfsg+really2.9.14-2.1+deb13u3"}},{"package":{"name":"rootio-libxml2","ecosystem":"Root:Debian:13"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.12.7+dfsg+really2.9.14-2.1+deb13u3.aikido.15"},{"fixed":"2.12.7+dfsg+really2.9.14-2.1+deb13u3.aikido.16"}]}],"database_specific":{"all_fixed_versions":["2.12.7+dfsg+really2.9.14-2.1+deb13u3.aikido.15","2.12.7+dfsg+really2.9.14-2.1+deb13u3.aikido.16"],"root_patch_version":"aikido.16","root_patched":true,"total_fixed_versions":2,"upstream_version":"2.12.7+dfsg+really2.9.14-2.1+deb13u3"}}],"database_specific":{"distro":"debian","distro_version":"13","severity":"HIGH","source":"Root"}}
