Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-22715

Опубликовано: 16 июл. 2026
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2026-22715: expat security update (IMPORTANT)

[2.7.3-57]

  • expat: backport CVE-2026-45186 fix (attribute collision check DoS)

[2.7.3-56]

  • Rebase to 2.7.3 and add VCS tag
  • Fix behavior change caused by fix for CVE-2024-8176
  • Fix CVE-2024-8176
  • Rebase to 2.6.4
  • Bump release for October 2024 mass rebuild:
  • Rebase to 2.6.2
  • Bump release for June 2024 mass rebuild
  • Update of fmf plans and gating for c10s

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

expat

2.7.3-1.el10_2.1

expat-devel

2.7.3-1.el10_2.1

Oracle Linux x86_64

expat

2.7.3-1.el10_2.1

expat-devel

2.7.3-1.el10_2.1

Связанные CVE

Связанные уязвимости

CVSS3: 2.9
ubuntu
3 месяца назад

In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.

CVSS3: 7.5
redhat
3 месяца назад

In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.

CVSS3: 2.9
nvd
3 месяца назад

In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.

CVSS3: 2.9
msrc
3 месяца назад

In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.

CVSS3: 2.9
debian
3 месяца назад

In libexpat before 2.8.1, the computational complexity of attribute na ...