[CLSA-2024:1726608613] expat: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2024-09-17 21:30:17 UTC
Description:
- CVE-2024-45490: Reject negative length for XML_ParseBuffer in xmlparse.c - CVE-2024-45491: Detect integer overflow in dtdCopy on 32-bit platforms - CVE-2024-45492: Detect integer overflow in nextScaffoldPart on 32-bit platforms
Updated packages:
  • expat-2.1.0-15.el7_9.tuxcare.els2.i686.rpm
    sha:267ac3ce6cc9893da3a80da450fa338af3ceea04135c515a4370b3dc45ffe7d5
  • expat-2.1.0-15.el7_9.tuxcare.els2.x86_64.rpm
    sha:d5e5cb52c94f6913157565ee35254182d203a06642c5d79a8849cac47ece4c64
  • expat-devel-2.1.0-15.el7_9.tuxcare.els2.i686.rpm
    sha:6a351db2be6b5a2fb1c673f9fb87ad53eef17aa6d3a44c5d8ea0d4783dadf504
  • expat-devel-2.1.0-15.el7_9.tuxcare.els2.x86_64.rpm
    sha:062fd6d7d19a490b0cfa358654460224e964b74af803ed58c48998bb14932db1
  • expat-static-2.1.0-15.el7_9.tuxcare.els2.i686.rpm
    sha:b02b317dbb48d8bd0d58c14b137643da25e9068eb79cfddee83fb286e7521e0d
  • expat-static-2.1.0-15.el7_9.tuxcare.els2.x86_64.rpm
    sha:30df10f5b2a2001a6a0c23759df6c6bd073fe46382d26f43187fc7d7e45e977c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.