Описание
ELSA-2026-22715: expat security update (IMPORTANT)
[2.7.3-57]
- expat: backport CVE-2026-45186 fix (attribute collision check DoS)
[2.7.3-56]
- Rebase to 2.7.3 and add VCS tag
- Thu Jun 05 2025 psklenar@redhat.com psklenar@redhat.com
- Fri Mar 28 2025 Tomas Korbar tkorbar@redhat.com
- Fix behavior change caused by fix for CVE-2024-8176
- Fri Mar 14 2025 Tomas Korbar tkorbar@redhat.com
- Fix CVE-2024-8176
- Thu Nov 07 2024 Tomas Korbar tkorbar@redhat.com
- Rebase to 2.6.4
- Tue Oct 29 2024 Troy Dawson tdawson@redhat.com
- Bump release for October 2024 mass rebuild:
- Wed Jul 03 2024 Tomas Korbar tkorbar@redhat.com
- Rebase to 2.6.2
- Mon Jun 24 2024 Troy Dawson tdawson@redhat.com
- Bump release for June 2024 mass rebuild
- Fri Jun 21 2024 Frantisek Hrdina fhrdina@redhat.com
- Update of fmf plans and gating for c10s
Обновленные пакеты
Oracle Linux 10
Oracle Linux aarch64
expat
2.7.3-1.el10_2.1
expat-devel
2.7.3-1.el10_2.1
Oracle Linux x86_64
expat
2.7.3-1.el10_2.1
expat-devel
2.7.3-1.el10_2.1
Связанные CVE
Связанные уязвимости
In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.
In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.
In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.
In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.
In libexpat before 2.8.1, the computational complexity of attribute na ...