ELSA-2024-1615

ELSA-2024-1615 - expat security update

Type:SECURITY
Severity:MODERATE
Release Date:2024-04-03

Description


[2.2.5-11.0.1.1]
- lib: Prevent integer overflow in doProlog [CVE-2022-23990][Orabug: 33910314]

[2.2.5-11.1]
- CVE-2023-52425 expat: parsing large tokens can trigger a denial of service
- Resolves: RHEL-29321


Related CVEs


CVE-2023-52425

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) expat-2.2.5-11.0.1.el8_9.1.src.rpmbd7d59ee46b1f31cc145d12610e3883a-ol8_aarch64_baseos_latest
expat-2.2.5-11.0.1.el8_9.1.src.rpmbd7d59ee46b1f31cc145d12610e3883a-ol8_aarch64_u9_baseos_patch
expat-2.2.5-11.0.1.el8_9.1.aarch64.rpmef14ae3379c94a8c162fbb5e79009915-ol8_aarch64_baseos_latest
expat-2.2.5-11.0.1.el8_9.1.aarch64.rpmef14ae3379c94a8c162fbb5e79009915-ol8_aarch64_u9_baseos_patch
expat-devel-2.2.5-11.0.1.el8_9.1.aarch64.rpm595bfdfe32545247d91c85128dcb3759-ol8_aarch64_baseos_latest
expat-devel-2.2.5-11.0.1.el8_9.1.aarch64.rpm595bfdfe32545247d91c85128dcb3759-ol8_aarch64_u9_baseos_patch
Oracle Linux 8 (x86_64) expat-2.2.5-11.0.1.el8_9.1.src.rpmbd7d59ee46b1f31cc145d12610e3883a-ol8_x86_64_baseos_latest
expat-2.2.5-11.0.1.el8_9.1.src.rpmbd7d59ee46b1f31cc145d12610e3883a-ol8_x86_64_u9_baseos_patch
expat-2.2.5-11.0.1.el8_9.1.i686.rpm8b5a80ba1888d2e2e013c522bb40ffee-ol8_x86_64_baseos_latest
expat-2.2.5-11.0.1.el8_9.1.i686.rpm8b5a80ba1888d2e2e013c522bb40ffee-ol8_x86_64_u9_baseos_patch
expat-2.2.5-11.0.1.el8_9.1.x86_64.rpm91dba5cef51d2d9117b532fea358ba84-ol8_x86_64_baseos_latest
expat-2.2.5-11.0.1.el8_9.1.x86_64.rpm91dba5cef51d2d9117b532fea358ba84-ol8_x86_64_u9_baseos_patch
expat-devel-2.2.5-11.0.1.el8_9.1.i686.rpm21dae04d80a506df2f6d48d490bd3c7b-ol8_x86_64_baseos_latest
expat-devel-2.2.5-11.0.1.el8_9.1.i686.rpm21dae04d80a506df2f6d48d490bd3c7b-ol8_x86_64_u9_baseos_patch
expat-devel-2.2.5-11.0.1.el8_9.1.x86_64.rpm91814e50e1a9aa3c4a0d1c71914cd551-ol8_x86_64_baseos_latest
expat-devel-2.2.5-11.0.1.el8_9.1.x86_64.rpm91814e50e1a9aa3c4a0d1c71914cd551-ol8_x86_64_u9_baseos_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete