[CLSA-2026:1779358733] expat: Fix of CVE-2026-45186
Type:
security
Severity:
Important
Release date:
2026-05-21 10:18:57 UTC
Description:
- CVE-2026-45186: fix quadratic runtime in attribute collision detection by using a hash table for default attribute names instead of an O(n^2) loop
Updated packages:
  • expat-2.1.0-15.0.7.amzn2.tuxcare.els2.i686.rpm
    sha:b99ce865bf093372dea4a873a1eef0fe819f1666ee620d17907d7119edd1f832
  • expat-2.1.0-15.0.7.amzn2.tuxcare.els2.x86_64.rpm
    sha:5e6511a66706f19226f690c8d2beec7dcd28642b8aca6f9198c9a72a4dae8a9c
  • expat-devel-2.1.0-15.0.7.amzn2.tuxcare.els2.x86_64.rpm
    sha:7ed66d0de17b73a49256d0e4763d30e60f01b639150fc2df8b62f14c7cbcf016
  • expat-static-2.1.0-15.0.7.amzn2.tuxcare.els2.x86_64.rpm
    sha:88bbb54ab68d486be245f2b80637e9cc39f4636503fbaaba2808b7b6bc60e812
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.