[CLSA-2024:1726608591] expat: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2024-09-17 21:29:54 UTC
Description:
- CVE-2024-45490: Reject negative length for XML_ParseBuffer in xmlparse.c - CVE-2024-45491: Detect integer overflow in dtdCopy on 32-bit platforms - CVE-2024-45492: Detect integer overflow in nextScaffoldPart on 32-bit platforms
Updated packages:
  • expat-2.1.0-15.el7_9.tuxcare.els2.i686.rpm
    sha:ae2d96373978a1429bddd5b33be8f1b92e35000aec2f17743bb9fc5e4971ea2c
  • expat-2.1.0-15.el7_9.tuxcare.els2.x86_64.rpm
    sha:b713302cfc1bcc7b4800361bdda6d2db4a35bd54986f68c5efbf395876d877f8
  • expat-devel-2.1.0-15.el7_9.tuxcare.els2.i686.rpm
    sha:877f7999b4e86f581798823d5c6276ccbb86f162afe66f81b88a6bba08be172e
  • expat-devel-2.1.0-15.el7_9.tuxcare.els2.x86_64.rpm
    sha:7bf9cd00f13fe37ac283a4431ac701b27ab574564e46a72517301a19f72583d4
  • expat-static-2.1.0-15.el7_9.tuxcare.els2.i686.rpm
    sha:83ccf7c2f94d61895b718b5fe40c3ac3b58eb86335fe4278201b749a4755e584
  • expat-static-2.1.0-15.el7_9.tuxcare.els2.x86_64.rpm
    sha:fac642c8af9dca8faebaf780b3a5c06222ff8cd63faa0f83197106293766033f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.