Commit Graph

1 Commits

Author SHA1 Message Date
Rob Crittenden
288e29745d Prevent integer overflow or wraparound CVE-2024-45491
An issue was discovered in libexpat before 2.6.3. dtdCopy in
xmlparse.c can have an integer overflow for nDefaultAtts on
32-bit platforms (where UINT_MAX equals SIZE_MAX).

Backported from upstream https://github.com/libexpat/libexpat/pull/891

Resolves: RHEL-57519
2024-09-20 10:04:54 -04:00