[CLSA-2026:1776242108] expat: Fix of 2 CVEs
Type:
security
Severity:
('Critical', ['ELSCVE-79319', 'ELSCVE-79305', 'ELSCVE-79292'])
Release date:
2026-04-15 23:21:14 UTC
Description:
- CVE-2022-25313: prevent stack exhaustion in build_model - CVE-2024-50602: make XML_StopParser refuse to stop/suspend an unstarted parser
Updated packages:
  • expat-2.1.0-15.0.6.amzn2.tuxcare.els1.i686.rpm
    sha:d30c30f451a0f7fbf58add663632a47afcfac6c5bb6fe12ba7c41b33eb6141a7
  • expat-2.1.0-15.0.6.amzn2.tuxcare.els1.x86_64.rpm
    sha:52d76be5f8450fb4316be3cf5d69064ebc25f796b3f8c4ba71a20001ad3435f6
  • expat-devel-2.1.0-15.0.6.amzn2.tuxcare.els1.x86_64.rpm
    sha:ef38253db1dc9d08ab2244ebc34d5c56b39d5ab158ea9fcc7745158a2b2b3728
  • expat-static-2.1.0-15.0.6.amzn2.tuxcare.els1.x86_64.rpm
    sha:f9148fda419d2c0b91cda0b5df95d1c1b2b8c8a8403549141f50d3ff16fe8572
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.