[CLSA-2026:1777304792] expat: Fix of 3 CVEs
Type:
security
Severity:
Important
Release date:
2026-04-29 07:08:01 UTC
Description:
- CVE-2017-9233: Fix external entity infinite loop bug - CVE-2018-20843: Fix extraction of namespace prefix from XML name - CVE-2019-15903: Deny internal entities closing the doctype (heap overread)
Updated packages:
  • expat-2.0.1-13.el6_8.tuxcare.els8.i686.rpm
    sha:3ec897ba085cfa8a9e4d820a3786242ca61ff4504b56fcb710c3d8ab83df14d3
  • expat-2.0.1-13.el6_8.tuxcare.els8.x86_64.rpm
    sha:47b25cda491cb56250757557b7222e353b498e1218a47e071a3105d8eff69a32
  • expat-devel-2.0.1-13.el6_8.tuxcare.els8.i686.rpm
    sha:02f06363cc94d1277e38178d44e9e23adf825502833166c83046a2b253741077
  • expat-devel-2.0.1-13.el6_8.tuxcare.els8.x86_64.rpm
    sha:6c1da06fa5f52ba57df9bda0ef5150bda56b491c66783019009f9ca206c602ab
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.