Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:6266 - Security Advisory
Issued:
2026-03-31
Updated:
2026-03-31

RHSA-2026:6266 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: libxslt security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for libxslt is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

libxslt is a library for transforming XML files into other textual formats (including HTML, plain text, and other XML representations of the underlying data) using the standard XSLT stylesheet transformation mechanism.

Security Fix(es):

  • libxslt: Processing web content may disclose sensitive information (CVE-2023-40403)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64

Fixes

  • BZ - 2349766 - CVE-2023-40403 libxslt: Processing web content may disclose sensitive information

CVEs

  • CVE-2023-40403

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 9

SRPM
libxslt-1.1.34-14.el9_7.1.src.rpm SHA-256: 52dfaf51f4dd59eeaf60b6b0c1a4ef41c83001f29568cd9d3521696ba3e50c3d
x86_64
libxslt-1.1.34-14.el9_7.1.i686.rpm SHA-256: 8dabffc82a476fd286d3f77668df23442dfec069cfdf24242f2fa3ce6de6e3c0
libxslt-1.1.34-14.el9_7.1.x86_64.rpm SHA-256: d92873a046c78ae6837d8b23deecbfa1d6376b81bf587382e89ed345c1d5bad5
libxslt-debuginfo-1.1.34-14.el9_7.1.i686.rpm SHA-256: ab13c9305c6267b50d0a2c4f8ef51f91d3b1a56d7e6f4f1c23d3d3524d7cda5f
libxslt-debuginfo-1.1.34-14.el9_7.1.x86_64.rpm SHA-256: 396948f3cda73dfeb0581b999d968c76db3657d28f982245beac884e55afa5bb
libxslt-debugsource-1.1.34-14.el9_7.1.i686.rpm SHA-256: 7822e1a4f3c27adaacb83d909648538e2950cbe3e3d2d9426c92f75cbcace45d
libxslt-debugsource-1.1.34-14.el9_7.1.x86_64.rpm SHA-256: 079c00865b5aeb75957498328c9b13a366960c4f68cf58003b87860ce75b258f
libxslt-devel-1.1.34-14.el9_7.1.i686.rpm SHA-256: 8a6fa559812cd5410a32a0c9cfc9ebffdd5916ee15c0a2ca7eb5d7ec4564fe16
libxslt-devel-1.1.34-14.el9_7.1.x86_64.rpm SHA-256: 749923533964a4d1fc6fb17487529cd19a1652e9e6e6796d87d772a58185383f

Red Hat Enterprise Linux for IBM z Systems 9

SRPM
libxslt-1.1.34-14.el9_7.1.src.rpm SHA-256: 52dfaf51f4dd59eeaf60b6b0c1a4ef41c83001f29568cd9d3521696ba3e50c3d
s390x
libxslt-1.1.34-14.el9_7.1.s390x.rpm SHA-256: 8b22a204421446c6c45361ee28f5c394da79088a9998676d73c15a81c0225d55
libxslt-debuginfo-1.1.34-14.el9_7.1.s390x.rpm SHA-256: 5bc0c98dde819689a7bc66bd87818053b1aa65080fc4a8c1b6df0da8e83f2031
libxslt-debugsource-1.1.34-14.el9_7.1.s390x.rpm SHA-256: e80c63403e318ebcb3c025e7f58c816392795638691e575e9f13767658bffb94
libxslt-devel-1.1.34-14.el9_7.1.s390x.rpm SHA-256: 9dc94f6482ab542c8b492aa73ce0ca5b530a96a85b0e8b305fa7b7721ae9fc86

Red Hat Enterprise Linux for Power, little endian 9

SRPM
libxslt-1.1.34-14.el9_7.1.src.rpm SHA-256: 52dfaf51f4dd59eeaf60b6b0c1a4ef41c83001f29568cd9d3521696ba3e50c3d
ppc64le
libxslt-1.1.34-14.el9_7.1.ppc64le.rpm SHA-256: c07405af5c0110256e0ec1ab4f9a344155d1d0056ab545df729c4291b8292e09
libxslt-debuginfo-1.1.34-14.el9_7.1.ppc64le.rpm SHA-256: c661295600ffeb5c1b9569a1b0e34c6ef116695b50639bb3a8313f94d400c4be
libxslt-debugsource-1.1.34-14.el9_7.1.ppc64le.rpm SHA-256: d166486a59bb23d63fbe1d4cb6dea0f28fac2e445e1a31169c3a9ef2978c68aa
libxslt-devel-1.1.34-14.el9_7.1.ppc64le.rpm SHA-256: df04f9dad2737e10c8e5909c517724f184cc6a8dc139c0c665d01ee49e06c0af

Red Hat Enterprise Linux for ARM 64 9

SRPM
libxslt-1.1.34-14.el9_7.1.src.rpm SHA-256: 52dfaf51f4dd59eeaf60b6b0c1a4ef41c83001f29568cd9d3521696ba3e50c3d
aarch64
libxslt-1.1.34-14.el9_7.1.aarch64.rpm SHA-256: 2b1fc002c4f57960df438791f7dfb5d4defa964f1afc73c3556451bc7f5ea01c
libxslt-debuginfo-1.1.34-14.el9_7.1.aarch64.rpm SHA-256: bb95c7df855e8ede32cdcb1cb31d0be39f484625f771a2bd497df02b504794d6
libxslt-debugsource-1.1.34-14.el9_7.1.aarch64.rpm SHA-256: babd3145275ae3306380ee0b377a77e9d24d3f20e2f54ade4158d1fef41bad02
libxslt-devel-1.1.34-14.el9_7.1.aarch64.rpm SHA-256: b73e96e959a8cb76854daa1724b946851841e253f37876d5715bd37161697e92

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility