[ALSA-2026:7681] Important: perl-XML-Parser security update
Type:
security
Severity:
important
Release date:
2026-04-14
Description:
This module provides ways to parse XML documents. It is built on top of XML::Parser::Expat, which is a lower level interface to James Clark's expat library. Each call to one of the parsing methods creates a new instance of XML::Parser::Expat which is then used to parse the document. Expat options may be provided when the XML::Parser object is created. These options are then passed on to the Expat object on each parse call. They can also be given as extra arguments to the parse methods, in which case they override options given at XML::Parser creation time. Security Fix(es): * perl-xml-parser: XML::Parser: Memory corruption via deeply nested XML files (CVE-2006-10003) * perl-xml-parser: XML::Parser for Perl: Heap corruption and denial of service from crafted XML input (CVE-2006-10002) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 perl-XML-Parser-2.44-12.el8_10.aarch64.rpm dd7caeb14914db0e5208fd1cec420cf4a4b95e016c637143348d325942fd81c3
ppc64le perl-XML-Parser-2.44-12.el8_10.ppc64le.rpm 5091c39de6780a96bedd35ebb5680e2bee941c96641aa2c9fab9b39a9b041dac
s390x perl-XML-Parser-2.44-12.el8_10.s390x.rpm f785a2283055f9be0f1cde9c22d8927eef8ab383c295f9737d9c856436ff4e7d
x86_64 perl-XML-Parser-2.44-12.el8_10.x86_64.rpm c7df674b57a6b1dbe944d37e7a5d2baa7ce1b6b5645e5f92c8d3200e8440cd5c
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.