[Apollo] Advisories Statistics light light Login

RLSA-2025:19403

Security Mirrored from RHSA-2025:19403
Issued at: 2025-11-06
Updated at: 2025-11-13

Synopsis

Important: expat security update



Description

Expat is a C library for parsing XML documents.

Security Fix(es):

* expat: libexpat in Expat allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing (CVE-2025-59375)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 10.0 aarch64 Rocky Linux 10.0 ppc64le Rocky Linux 10.0 s390x Rocky Linux 10.0 x86_64

Fixes

2395108

CVEs

CVE-2025-59375

Affected packages

Rocky Linux 10.0 aarch64 - BaseOS

expat-0:2.7.1-1.el10_0.3.aarch64.rpm expat-0:2.7.1-1.el10_0.3.src.rpm expat-debuginfo-0:2.7.1-1.el10_0.3.aarch64.rpm expat-debugsource-0:2.7.1-1.el10_0.3.aarch64.rpm

Rocky Linux 10.0 ppc64le - BaseOS

expat-0:2.7.1-1.el10_0.3.ppc64le.rpm expat-0:2.7.1-1.el10_0.3.src.rpm expat-debuginfo-0:2.7.1-1.el10_0.3.ppc64le.rpm expat-debugsource-0:2.7.1-1.el10_0.3.ppc64le.rpm

Rocky Linux 10.0 s390x - BaseOS

expat-0:2.7.1-1.el10_0.3.s390x.rpm expat-0:2.7.1-1.el10_0.3.src.rpm expat-debuginfo-0:2.7.1-1.el10_0.3.s390x.rpm expat-debugsource-0:2.7.1-1.el10_0.3.s390x.rpm

Rocky Linux 10.0 x86_64 - BaseOS

expat-0:2.7.1-1.el10_0.3.src.rpm expat-0:2.7.1-1.el10_0.3.x86_64.rpm expat-debuginfo-0:2.7.1-1.el10_0.3.x86_64.rpm expat-debugsource-0:2.7.1-1.el10_0.3.x86_64.rpm

Rocky Linux 10.0 aarch64 - AppStream

expat-devel-0:2.7.1-1.el10_0.3.aarch64.rpm

Rocky Linux 10.0 ppc64le - AppStream

expat-devel-0:2.7.1-1.el10_0.3.ppc64le.rpm

Rocky Linux 10.0 s390x - AppStream

expat-devel-0:2.7.1-1.el10_0.3.s390x.rpm

Rocky Linux 10.0 x86_64 - AppStream

expat-devel-0:2.7.1-1.el10_0.3.x86_64.rpm