Updated mingw-expat & expat packages fix security vulnerabilities
Publication date: 05 Sep 2026Modification date: 05 Sep 2026
Type: security
Affected Mageia releases : 10
CVE: CVE-2026-66046 , CVE-2026-76641 , CVE-2026-76956 , CVE-2026-76957
Description
Expat Denial of Service via storeAtts() Quadratic Complexity.
(CVE-2026-66046)
Expat Out-of-Bounds Read via dtdCopy. (CVE-2026-76641)
In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of
getentropy's return code leads to insufficient entropy, which results in
being vulnerable to hash flooding attacks, causing a denial of service
via crafted XML content. (CVE-2026-76956)
libexpat before 2.8.4 lacks handler call depth tracking with custom
encoding callbacks. Thus, a use-after-free can occur. (CVE-2026-76957)
References
- https://bugs.mageia.org/show_bug.cgi?id=36233
- https://www.openwall.com/lists/oss-security/2026/08/31/13
- https://blog.hartwork.org/posts/expat-2-8-4-released/
- https://github.com/libexpat/libexpat/blob/R_2_8_4/expat/Changes
- https://nvd.nist.gov/vuln/detail/cve-2026-66046
- https://nvd.nist.gov/vuln/detail/cve-2026-76641
- https://nvd.nist.gov/vuln/detail/cve-2026-76956
- https://nvd.nist.gov/vuln/detail/cve-2026-76957
- https://www.cve.org/CVERecord?id=CVE-2026-66046
- https://www.cve.org/CVERecord?id=CVE-2026-76641
- https://www.cve.org/CVERecord?id=CVE-2026-76956
- https://www.cve.org/CVERecord?id=CVE-2026-76957
SRPMS
10/core
- mingw-expat-2.8.4-1.mga10
- expat-2.8.4-1.mga10