[CLSA-2026:1780579806] expat: Fix of CVE-2026-41080
Type:
security
Severity:
Low
Release date:
2026-06-04 13:30:25 UTC
Description:
- CVE-2026-41080: fix hash-flooding DoS from insufficient salt entropy by extracting a full 16-byte hash salt and adding the XML_SetHashSalt16Bytes API
CVEs fixed:
Updated packages:
  • expat-2.5.0-5.el9_6.tuxcare.els8.i686.rpm
    sha:11875b2420124f744fc8f0ac4e3b2db026ef69bb3913c0df6da97d5501552b0f
  • expat-2.5.0-5.el9_6.tuxcare.els8.x86_64.rpm
    sha:349851de84c5f4fd6ceb0ee0e5612454ea1d48eb387de8db037d98e45cb097b1
  • expat-devel-2.5.0-5.el9_6.tuxcare.els8.i686.rpm
    sha:fb0b5657e9a2d63d0775c35e9a0971a3ebf83710b0e32ffee520e3e8e948ab9a
  • expat-devel-2.5.0-5.el9_6.tuxcare.els8.x86_64.rpm
    sha:db6e198cf105772b8dbbe4893b1086ea1ae677bd5bd240a264bb7d4718101755
  • expat-static-2.5.0-5.el9_6.tuxcare.els8.x86_64.rpm
    sha:d1adc6a97c6ec37b94eb6fc6070c7b649a42e166983c3abb8d80bfbf532dd405
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.