[CLSA-2026:1780578663] expat: Fix of CVE-2026-41080
Type:
security
Severity:
Low
Release date:
2026-06-04 13:11:20 UTC
Description:
- CVE-2026-41080: fix hash-flooding DoS from insufficient salt entropy by extracting a full 16-byte hash salt and adding the XML_SetHashSalt16Bytes API
CVEs fixed:
Updated packages:
  • expat-2.5.0-1.el8.tuxcare.els5.i686.rpm
    sha:77cb39c249cd76e38c6254452460b24cfd2f77965a30128141dde357219ec55d
  • expat-2.5.0-1.el8.tuxcare.els5.x86_64.rpm
    sha:ae1cb69478e1a888d86f58a1b7032e68d11770452f6c64ab754f0db781169e37
  • expat-devel-2.5.0-1.el8.tuxcare.els5.i686.rpm
    sha:dc629e7121325fd8c511f44dcdba2a3b8c77d66a36a0c79a421152ccae39720c
  • expat-devel-2.5.0-1.el8.tuxcare.els5.x86_64.rpm
    sha:604f9e0b4110842050ad688d335a1db9355a12786560c47ec21f9ca2c5ee604e
  • expat-static-2.5.0-1.el8.tuxcare.els5.x86_64.rpm
    sha:ca8df53bf76c00fb48dae7b582f2468a04fd2b29b0a0c38a3763424b91cfa568
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.