[ALSA-2026:64810] Moderate: expat security update
Type:
security
Severity:
moderate
Release date:
2026-09-09
Description:
Expat is a C library for parsing XML documents. Security Fix(es): * expat: libexpat: Use-after-free vulnerability due to improper handler call depth tracking (CVE-2026-50219) * expat: libexpat: Arbitrary Code Execution via Heap-based Buffer Overflow (CVE-2026-56132) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 expat-2.7.3-1.el10_2.3.aarch64.rpm 19a2f28512c3082f0458ad2e1615bd051e6b682b2dc8d1c53177613d6ec51097
aarch64 expat-devel-2.7.3-1.el10_2.3.aarch64.rpm 91dbc116abe33628ad9b1861c7d433bca7819f00ecb2a444105ab5c292578fc2
ppc64le expat-2.7.3-1.el10_2.3.ppc64le.rpm 12fbde801e5ac01e1149f584414d5c5fec107c5cb7fa11ee1f4013c2333d6035
ppc64le expat-devel-2.7.3-1.el10_2.3.ppc64le.rpm e768eb7f585309dca9d6b5ce19a45f67ae862b73baf3b750b3bfe9eafa20dc33
s390x expat-devel-2.7.3-1.el10_2.3.s390x.rpm 6b3d51bafa39ae6b6b942335ff64212fc460499d7e9376c99fcdacc0a309b453
s390x expat-2.7.3-1.el10_2.3.s390x.rpm a61dc304e08dd8f63e8d8935be0434d57b480a7c1e600f461df26c01fb79fbc4
x86_64 expat-2.7.3-1.el10_2.3.x86_64.rpm 2797b183ede9a490d6adedac791dfab31862c5f4b024fa2514bd98740d3cd996
x86_64 expat-devel-2.7.3-1.el10_2.3.x86_64.rpm 69afe5509f4039c072e070f50cda1ed3ca080fb5bca6a8b8dc4d81298354c1ab
x86_64_v2 expat-devel-2.7.3-1.el10_2.3.x86_64_v2.rpm dad7793aaab0d11071e44a3eeb494099895a5f5eeaac8c0c60a6dd5142dcf66c
x86_64_v2 expat-2.7.3-1.el10_2.3.x86_64_v2.rpm fd6aed8466ea98d76d475393541556b21150864e8059cf731ab31902f3e1e05d
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.