Release Info

Advisory: CLSA-2023:1696877712

OS: CentOS 7 ELS

Public date: 2023-10-09 14:55:14

Project: expat

Version: 2.1.0-15.el7_9.tuxcare.els1

Errata link: https://errata.tuxcare.com/centos7-els/CLSA-2023-1696877712.html

Changelog

- CVE-2022-23990: lib: prevent integer overflow in function doProlog - CVE-2022-43680: fix overeager DTD destruction in XML_ExternalEntityParserCreate

Update

Update command: yum update expat*

Packages list

expat-2.1.0-15.el7_9.tuxcare.els1.i686.rpm expat-2.1.0-15.el7_9.tuxcare.els1.x86_64.rpm expat-devel-2.1.0-15.el7_9.tuxcare.els1.i686.rpm expat-devel-2.1.0-15.el7_9.tuxcare.els1.x86_64.rpm expat-static-2.1.0-15.el7_9.tuxcare.els1.i686.rpm expat-static-2.1.0-15.el7_9.tuxcare.els1.x86_64.rpm

CVEs

CVE-2022-43680
CVE-2022-23990