RHSA-2025:22033HighCVSS 7.5

Red Hat Security Advisory: expat security update

Published
November 25, 2025
Last Modified
June 27, 2026

🔗 CVE IDs covered (2)

📋 Description

CVE-2024-8176 — libexpat: expat: Improper Restriction of XML Entity Expansion Depth in libexpat CVE-2025-59375 — firefox: thunderbird: expat: libexpat in Expat allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing

🔗 References (5)