expat-2.2.10-12.el9.2

エラータID: AXSA:2022-4305:10

Release date: 
Tuesday, December 6, 2022 - 05:33
Subject: 
expat-2.2.10-12.el9.2
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

Expat is a C library for parsing XML documents.

Security Fix(es):

* expat: a use-after-free in the doContent function in xmlparse.c (CVE-2022-40674)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2022-40674
libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. expat-2.2.10-12.el9.2.src.rpm
    MD5: 0ec4d0a430c10db845f3b944c5ea4805
    SHA-256: f327cb85d372c3626b3a83165bac2f0a2e587563e21f4c41c6b88c7f38c56405
    Size: 7.92 MB

Asianux Server 9 for x86_64
  1. expat-2.2.10-12.el9.2.x86_64.rpm
    MD5: 98ddf91c5d7e3beecf2156ba69c3ab78
    SHA-256: 071dd464445544df713cc2335fa23227d7146ab4a0c218fafdd243bec23c520d
    Size: 105.31 kB
  2. expat-devel-2.2.10-12.el9.2.x86_64.rpm
    MD5: b098499f148dd11ba82981b398d79a16
    SHA-256: fa85212685268f8a5015317f36d2c4deddffb39f5bd81a112f173f7873534bcd
    Size: 48.08 kB
  3. expat-2.2.10-12.el9.2.i686.rpm
    MD5: e951655365686df6342897bbb53e25e8
    SHA-256: 38d18f36ea326dd871f9e3f0f5ada548e789b13a0ccefa0aad95c18113538829
    Size: 107.79 kB
  4. expat-devel-2.2.10-12.el9.2.i686.rpm
    MD5: 0e845e05f5c4310b552eeca6aa1e239a
    SHA-256: 7540a541bfacb16ee2dfa2bb4c3fd3ed3fd43343837147be7539a28542843406
    Size: 48.08 kB