Issued at: 2026-09-09
Updated at: 2026-09-10
Advisory content derived from Red Hat RHSA-2026:64809, © Red Hat, Inc., used under CC BY 4.0, with modifications.
Synopsis
Moderate: expat security update
Description
Expat is a C library for parsing XML documents.
Security Fix(es):
* expat: libexpat: Use-after-free vulnerability due to improper handler call depth tracking (CVE-2026-50219)
* expat: libexpat: Arbitrary Code Execution via Heap-based Buffer Overflow (CVE-2026-56132)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.