[Apollo] Advisories Statistics light light Login

RLSA-2023:3068

Security Mirrored from RHSA-2023:3068
Issued at: 2025-12-27
Updated at: 2025-12-29

Synopsis

Important: mingw-expat security update



Description

Expat is a C library for parsing XML documents. The mingw-expat packages provide a port of the Expat library for MinGW.

Security Fix(es):

* expat: a use-after-free in the doContent function in xmlparse.c (CVE-2022-40674)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.8 Release Notes linked from the References section.



Affected products

Rocky Linux 8 aarch64 Rocky Linux 8 x86_64

Fixes

2130769

CVEs

CVE-2022-40674

Affected packages

Rocky Linux 8 aarch64 - PowerTools

mingw-expat-0:2.4.8-2.el8.src.rpm

Rocky Linux 8 x86_64 - PowerTools

mingw32-expat-0:2.4.8-2.el8.noarch.rpm mingw32-expat-debuginfo-0:2.4.8-2.el8.noarch.rpm mingw64-expat-0:2.4.8-2.el8.noarch.rpm mingw64-expat-debuginfo-0:2.4.8-2.el8.noarch.rpm mingw-expat-0:2.4.8-2.el8.src.rpm