Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:3926 - Security Advisory
Issued:
2024-06-13
Updated:
2024-06-13

RHSA-2024:3926 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: expat security update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for expat is now available for Red Hat Enterprise Linux 9.2 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Expat is a C library for parsing XML documents.

Security Fix(es):

  • expat: parsing large tokens can trigger a denial of service (CVE-2023-52425)
  • expat: XML Entity Expansion (CVE-2024-28757)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

After installing the updated packages, applications using the Expat library must be restarted for the update to take effect.

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2 x86_64
  • Red Hat Enterprise Linux Server - AUS 9.2 x86_64
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.2 s390x
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.2 ppc64le
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2 aarch64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x

Fixes

  • BZ - 2262877 - CVE-2023-52425 expat: parsing large tokens can trigger a denial of service
  • BZ - 2268766 - CVE-2024-28757 expat: XML Entity Expansion

CVEs

  • CVE-2023-52425
  • CVE-2024-28757

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2

SRPM
expat-2.5.0-1.el9_2.1.src.rpm SHA-256: 2f281111de367c4cc6c04b0349392c9c75f7b903ef55365522bcfcc496c255eb
x86_64
expat-2.5.0-1.el9_2.1.i686.rpm SHA-256: a5b2047f77d1e0e7a5070ab7f1c9304627b1210e64e4751653fb2f985d00b9cb
expat-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 263b7a39121f0f4214a095745c538835b47c58cbf7d766c30aa92b0062daf7d9
expat-debuginfo-2.5.0-1.el9_2.1.i686.rpm SHA-256: 660373a5b7f9e9927c0ec4313bd6432416d115707c182be6345ed03aaf4c3133
expat-debuginfo-2.5.0-1.el9_2.1.i686.rpm SHA-256: 660373a5b7f9e9927c0ec4313bd6432416d115707c182be6345ed03aaf4c3133
expat-debuginfo-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 2588b06a72e5fb6ad5a11ced4dc444dd652ba584a09b1902999e0efd2e06d8c1
expat-debuginfo-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 2588b06a72e5fb6ad5a11ced4dc444dd652ba584a09b1902999e0efd2e06d8c1
expat-debugsource-2.5.0-1.el9_2.1.i686.rpm SHA-256: 499da8a19808cef9cf27075490e0956f89d0ffc1fb63dadba0de689180f75219
expat-debugsource-2.5.0-1.el9_2.1.i686.rpm SHA-256: 499da8a19808cef9cf27075490e0956f89d0ffc1fb63dadba0de689180f75219
expat-debugsource-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 343a121cbe97ff76d17c5825656c1f8418d13d007e0aa85440b76888e3e90fd0
expat-debugsource-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 343a121cbe97ff76d17c5825656c1f8418d13d007e0aa85440b76888e3e90fd0
expat-devel-2.5.0-1.el9_2.1.i686.rpm SHA-256: ffaeb933879473ec425a2bfa7968e79b99d58bb1f6be4bf52946200094765bf9
expat-devel-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 1cadff51e9f27eceb84a796aa0760e19ffed10edb4fe6b2dcd64107fd91a1a8c

Red Hat Enterprise Linux Server - AUS 9.2

SRPM
expat-2.5.0-1.el9_2.1.src.rpm SHA-256: 2f281111de367c4cc6c04b0349392c9c75f7b903ef55365522bcfcc496c255eb
x86_64
expat-2.5.0-1.el9_2.1.i686.rpm SHA-256: a5b2047f77d1e0e7a5070ab7f1c9304627b1210e64e4751653fb2f985d00b9cb
expat-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 263b7a39121f0f4214a095745c538835b47c58cbf7d766c30aa92b0062daf7d9
expat-debuginfo-2.5.0-1.el9_2.1.i686.rpm SHA-256: 660373a5b7f9e9927c0ec4313bd6432416d115707c182be6345ed03aaf4c3133
expat-debuginfo-2.5.0-1.el9_2.1.i686.rpm SHA-256: 660373a5b7f9e9927c0ec4313bd6432416d115707c182be6345ed03aaf4c3133
expat-debuginfo-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 2588b06a72e5fb6ad5a11ced4dc444dd652ba584a09b1902999e0efd2e06d8c1
expat-debuginfo-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 2588b06a72e5fb6ad5a11ced4dc444dd652ba584a09b1902999e0efd2e06d8c1
expat-debugsource-2.5.0-1.el9_2.1.i686.rpm SHA-256: 499da8a19808cef9cf27075490e0956f89d0ffc1fb63dadba0de689180f75219
expat-debugsource-2.5.0-1.el9_2.1.i686.rpm SHA-256: 499da8a19808cef9cf27075490e0956f89d0ffc1fb63dadba0de689180f75219
expat-debugsource-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 343a121cbe97ff76d17c5825656c1f8418d13d007e0aa85440b76888e3e90fd0
expat-debugsource-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 343a121cbe97ff76d17c5825656c1f8418d13d007e0aa85440b76888e3e90fd0
expat-devel-2.5.0-1.el9_2.1.i686.rpm SHA-256: ffaeb933879473ec425a2bfa7968e79b99d58bb1f6be4bf52946200094765bf9
expat-devel-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 1cadff51e9f27eceb84a796aa0760e19ffed10edb4fe6b2dcd64107fd91a1a8c

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.2

SRPM
expat-2.5.0-1.el9_2.1.src.rpm SHA-256: 2f281111de367c4cc6c04b0349392c9c75f7b903ef55365522bcfcc496c255eb
s390x
expat-2.5.0-1.el9_2.1.s390x.rpm SHA-256: c857d2e347dc7c80a7a2e2c8ef6db794516a54253da06a77b51b7d908cb6975b
expat-debuginfo-2.5.0-1.el9_2.1.s390x.rpm SHA-256: c8b92a5a3580d969e7452781e4c5efe8b31f6dd67bda0c75fa41cd9aca93e4af
expat-debuginfo-2.5.0-1.el9_2.1.s390x.rpm SHA-256: c8b92a5a3580d969e7452781e4c5efe8b31f6dd67bda0c75fa41cd9aca93e4af
expat-debugsource-2.5.0-1.el9_2.1.s390x.rpm SHA-256: 53b69f136ade31686c53abf6fba157c5cede85a8eef281b5f441924e650fde79
expat-debugsource-2.5.0-1.el9_2.1.s390x.rpm SHA-256: 53b69f136ade31686c53abf6fba157c5cede85a8eef281b5f441924e650fde79
expat-devel-2.5.0-1.el9_2.1.s390x.rpm SHA-256: 3e19ac5eb2879944475c5fe97e7438b4c0bd77c9f9f4555b43cf88672465cedb

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.2

SRPM
expat-2.5.0-1.el9_2.1.src.rpm SHA-256: 2f281111de367c4cc6c04b0349392c9c75f7b903ef55365522bcfcc496c255eb
ppc64le
expat-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: af28f31b31e565fd000184d57b8962cbf49d969ba42262513c08facfa3adb1e9
expat-debuginfo-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: b709a13dfa645ee95fe4f699929400f872fe9f7d5f60cb424154bce482a52814
expat-debuginfo-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: b709a13dfa645ee95fe4f699929400f872fe9f7d5f60cb424154bce482a52814
expat-debugsource-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: 12ba69b06c44632bd48d665abc3a54ea685e357e6c3e36ac4934d007f01f6ffc
expat-debugsource-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: 12ba69b06c44632bd48d665abc3a54ea685e357e6c3e36ac4934d007f01f6ffc
expat-devel-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: 23fa062a616502f13571eb049964852d4020eb6fdd667b0d7b368a672a48b24e

Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2

SRPM
expat-2.5.0-1.el9_2.1.src.rpm SHA-256: 2f281111de367c4cc6c04b0349392c9c75f7b903ef55365522bcfcc496c255eb
aarch64
expat-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: e9f0dac3264b1eb567807da81f53538a2dea5b20464d4737fdc14918e2a17b7b
expat-debuginfo-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: bdf3b7a3b25e348e0d840ea4b0f67b2bc0b688d3874dd0e1bbb926f59e9508cf
expat-debuginfo-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: bdf3b7a3b25e348e0d840ea4b0f67b2bc0b688d3874dd0e1bbb926f59e9508cf
expat-debugsource-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: c6969faae7d0950de1b4e9eab46dd4dfd3b14d242b15d44ea82d6d70792213c4
expat-debugsource-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: c6969faae7d0950de1b4e9eab46dd4dfd3b14d242b15d44ea82d6d70792213c4
expat-devel-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: e344187501688343337599b53cce2a59de57f94c7d1fecd5a4a4c6d49ac35b76

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2

SRPM
expat-2.5.0-1.el9_2.1.src.rpm SHA-256: 2f281111de367c4cc6c04b0349392c9c75f7b903ef55365522bcfcc496c255eb
ppc64le
expat-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: af28f31b31e565fd000184d57b8962cbf49d969ba42262513c08facfa3adb1e9
expat-debuginfo-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: b709a13dfa645ee95fe4f699929400f872fe9f7d5f60cb424154bce482a52814
expat-debuginfo-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: b709a13dfa645ee95fe4f699929400f872fe9f7d5f60cb424154bce482a52814
expat-debugsource-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: 12ba69b06c44632bd48d665abc3a54ea685e357e6c3e36ac4934d007f01f6ffc
expat-debugsource-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: 12ba69b06c44632bd48d665abc3a54ea685e357e6c3e36ac4934d007f01f6ffc
expat-devel-2.5.0-1.el9_2.1.ppc64le.rpm SHA-256: 23fa062a616502f13571eb049964852d4020eb6fdd667b0d7b368a672a48b24e

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2

SRPM
expat-2.5.0-1.el9_2.1.src.rpm SHA-256: 2f281111de367c4cc6c04b0349392c9c75f7b903ef55365522bcfcc496c255eb
x86_64
expat-2.5.0-1.el9_2.1.i686.rpm SHA-256: a5b2047f77d1e0e7a5070ab7f1c9304627b1210e64e4751653fb2f985d00b9cb
expat-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 263b7a39121f0f4214a095745c538835b47c58cbf7d766c30aa92b0062daf7d9
expat-debuginfo-2.5.0-1.el9_2.1.i686.rpm SHA-256: 660373a5b7f9e9927c0ec4313bd6432416d115707c182be6345ed03aaf4c3133
expat-debuginfo-2.5.0-1.el9_2.1.i686.rpm SHA-256: 660373a5b7f9e9927c0ec4313bd6432416d115707c182be6345ed03aaf4c3133
expat-debuginfo-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 2588b06a72e5fb6ad5a11ced4dc444dd652ba584a09b1902999e0efd2e06d8c1
expat-debuginfo-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 2588b06a72e5fb6ad5a11ced4dc444dd652ba584a09b1902999e0efd2e06d8c1
expat-debugsource-2.5.0-1.el9_2.1.i686.rpm SHA-256: 499da8a19808cef9cf27075490e0956f89d0ffc1fb63dadba0de689180f75219
expat-debugsource-2.5.0-1.el9_2.1.i686.rpm SHA-256: 499da8a19808cef9cf27075490e0956f89d0ffc1fb63dadba0de689180f75219
expat-debugsource-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 343a121cbe97ff76d17c5825656c1f8418d13d007e0aa85440b76888e3e90fd0
expat-debugsource-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 343a121cbe97ff76d17c5825656c1f8418d13d007e0aa85440b76888e3e90fd0
expat-devel-2.5.0-1.el9_2.1.i686.rpm SHA-256: ffaeb933879473ec425a2bfa7968e79b99d58bb1f6be4bf52946200094765bf9
expat-devel-2.5.0-1.el9_2.1.x86_64.rpm SHA-256: 1cadff51e9f27eceb84a796aa0760e19ffed10edb4fe6b2dcd64107fd91a1a8c

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2

SRPM
expat-2.5.0-1.el9_2.1.src.rpm SHA-256: 2f281111de367c4cc6c04b0349392c9c75f7b903ef55365522bcfcc496c255eb
aarch64
expat-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: e9f0dac3264b1eb567807da81f53538a2dea5b20464d4737fdc14918e2a17b7b
expat-debuginfo-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: bdf3b7a3b25e348e0d840ea4b0f67b2bc0b688d3874dd0e1bbb926f59e9508cf
expat-debuginfo-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: bdf3b7a3b25e348e0d840ea4b0f67b2bc0b688d3874dd0e1bbb926f59e9508cf
expat-debugsource-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: c6969faae7d0950de1b4e9eab46dd4dfd3b14d242b15d44ea82d6d70792213c4
expat-debugsource-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: c6969faae7d0950de1b4e9eab46dd4dfd3b14d242b15d44ea82d6d70792213c4
expat-devel-2.5.0-1.el9_2.1.aarch64.rpm SHA-256: e344187501688343337599b53cce2a59de57f94c7d1fecd5a4a4c6d49ac35b76

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2

SRPM
expat-2.5.0-1.el9_2.1.src.rpm SHA-256: 2f281111de367c4cc6c04b0349392c9c75f7b903ef55365522bcfcc496c255eb
s390x
expat-2.5.0-1.el9_2.1.s390x.rpm SHA-256: c857d2e347dc7c80a7a2e2c8ef6db794516a54253da06a77b51b7d908cb6975b
expat-debuginfo-2.5.0-1.el9_2.1.s390x.rpm SHA-256: c8b92a5a3580d969e7452781e4c5efe8b31f6dd67bda0c75fa41cd9aca93e4af
expat-debuginfo-2.5.0-1.el9_2.1.s390x.rpm SHA-256: c8b92a5a3580d969e7452781e4c5efe8b31f6dd67bda0c75fa41cd9aca93e4af
expat-debugsource-2.5.0-1.el9_2.1.s390x.rpm SHA-256: 53b69f136ade31686c53abf6fba157c5cede85a8eef281b5f441924e650fde79
expat-debugsource-2.5.0-1.el9_2.1.s390x.rpm SHA-256: 53b69f136ade31686c53abf6fba157c5cede85a8eef281b5f441924e650fde79
expat-devel-2.5.0-1.el9_2.1.s390x.rpm SHA-256: 3e19ac5eb2879944475c5fe97e7438b4c0bd77c9f9f4555b43cf88672465cedb

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility