An XML parser library
Go to file
RHEL Packaging Agent 66bbbc6015 expat: backport CVE-2026-45186 fix (attribute collision check DoS)
Backport CVE-2026-45186 fix from upstream PR #1216 to
expat-2.7.3. The patch includes 7 cherry-picked commits:
4 test infrastructure updates and 3 library changes that
introduce a hash table for attribute name deduplication in
ELEMENT_TYPE. Added expat-2.7.3-CVE-2026-45186.patch and
changed %autosetup to use -p2 to correctly strip the
a/expat/ path prefix.

CVE: CVE-2026-45186
Upstream patches:
 - https://github.com/libexpat/libexpat/pull/1216.patch
Resolves: RHEL-177983

This commit was backported by Ymir, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Ymir
2026-07-15 06:42:16 +00:00
.fmf Adding fmf plan 2022-04-28 13:25:01 +02:00
.gitignore Rebase to 2.7.3 and add VCS tag 2025-12-02 14:19:19 +01:00
3176EF7DB2367F1FCA4F306B1F9B0E909AF37285 Fix behavior change caused by fix for CVE-2024-8176 2025-03-28 14:49:37 +01:00
ci.fmf Update of fmf plans and gating for c10s 2024-06-21 17:23:28 +02:00
expat-2.7.3-CVE-2026-45186.patch expat: backport CVE-2026-45186 fix (attribute collision check DoS) 2026-07-15 06:42:16 +00:00
expat.spec expat: backport CVE-2026-45186 fix (attribute collision check DoS) 2026-07-15 06:42:16 +00:00
gating.yaml Update of fmf plans and gating for c10s 2024-06-21 17:23:28 +02:00
plans.fmf https://issues.redhat.com/browse/RHELMISC-13073 2025-06-05 12:16:40 +02:00
sources Rebase to 2.7.3 and add VCS tag 2025-12-02 14:19:19 +01:00