development/libraries

expat-devel - Libraries and header files to develop applications using expat

Website: http://www.libexpat.org/
License: MIT
Vendor: Scientific Linux
Description:
The expat-devel package contains the libraries, include files and documentation
to develop XML applications with expat.

Packages

expat-devel-2.1.0-15.el7_9.x86_64 [53 KiB] Changelog by Tomas Korbar (2022-10-03):
- Ensure raw tagnames are safe exiting internalEntityParser
- Resolves: CVE-2022-40674
expat-devel-2.1.0-15.el7_9.i686 [53 KiB] Changelog by Tomas Korbar (2022-10-03):
- Ensure raw tagnames are safe exiting internalEntityParser
- Resolves: CVE-2022-40674
expat-devel-2.1.0-14.el7_9.x86_64 [53 KiB] Changelog by Tomas Korbar (2022-03-21):
- Fix multiple CVEs
- CVE-2022-25236 expat: namespace-separator characters in "xmlns[:prefix]" attribute values can lead to arbitrary code execution
- CVE-2022-25235 expat: malformed 2- and 3-byte UTF-8 sequences can lead to arbitrary code execution
- CVE-2022-25315 expat: integer overflow in storeRawNames()
- Resolves: CVE-2022-25236
- Resolves: CVE-2022-25235
- Resolves: CVE-2022-25315
expat-devel-2.1.0-14.el7_9.i686 [53 KiB] Changelog by Tomas Korbar (2022-03-21):
- Fix multiple CVEs
- CVE-2022-25236 expat: namespace-separator characters in "xmlns[:prefix]" attribute values can lead to arbitrary code execution
- CVE-2022-25235 expat: malformed 2- and 3-byte UTF-8 sequences can lead to arbitrary code execution
- CVE-2022-25315 expat: integer overflow in storeRawNames()
- Resolves: CVE-2022-25236
- Resolves: CVE-2022-25235
- Resolves: CVE-2022-25315

Listing created by Repoview-0.6.6-4.el7