[CLSA-2024:1725650114] expat: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2024-09-06 19:15:18 UTC
Description:
- CVE-2024-45490: reject negative length in XML_ParseBuffer - CVE-2024-45491: detect integer overflow in dtdCopy on 32-bit platforms - CVE-2024-45492: detect integer overflow in nextScaffoldPart on 32-bit platforms
Updated packages:
  • expat-2.5.0-1.el9.tuxcare.els2.i686.rpm
    sha:7cb8d929cb3219b899cb0dae138b821877c949f2d201c35ef32e10029ebef6cd
  • expat-2.5.0-1.el9.tuxcare.els2.x86_64.rpm
    sha:f6845e24ec6511debae512aabb977377fa000219dc8631602c048fed41cbe5cc
  • expat-devel-2.5.0-1.el9.tuxcare.els2.i686.rpm
    sha:293a4390dd9a2b5515a81ffc863b0b42fd9836c5376e2fae81b4b267e0b44cf8
  • expat-devel-2.5.0-1.el9.tuxcare.els2.x86_64.rpm
    sha:f1ec4282ca19d95d8ce476924ee5792d2007f38a381594987c2ef1000047e291
  • expat-static-2.5.0-1.el9.tuxcare.els2.x86_64.rpm
    sha:4d6ab3b6578e7f63ff7645a896e0a2625db57bf1f4c174e31c59dfe26bea5212
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.