[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-25210/expat

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jan 31 17:56:19 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
757da7ec by Salvatore Bonaccorso at 2026-01-31T18:55:47+01:00
Track fixed version for CVE-2026-25210/expat

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -479,7 +479,7 @@ CVE-2025-15288 (Tanium addressed an improper access controls vulnerability in In
 CVE-2025-12899 (A flaw in Zephyr\u2019s network stack allows an IPv4 packet containing ...)
 	NOT-FOR-US: Zephyr, different from src:zephyr
 CVE-2026-25210 (In libexpat before 2.7.4, the doContent function does not properly det ...)
-	- expat <unfixed> (bug #1126697)
+	- expat 2.7.4-1 (bug #1126697)
 	NOTE: Fixed by: https://github.com/libexpat/libexpat/commit/7ddea353ad3795f7222441274d4d9a155b523cba (R_2_7_4)
 	NOTE: Fixed by: https://github.com/libexpat/libexpat/commit/8855346359a475c022ec8c28484a76c852f144d9 (R_2_7_4)
 	NOTE: Fixed by: https://github.com/libexpat/libexpat/commit/9c2d990389e6abe2e44527eeaa8b39f16fe859c7 (R_2_7_4)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/757da7ec1436f99328e259aedd1ab33cf3ae8fb9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/757da7ec1436f99328e259aedd1ab33cf3ae8fb9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260131/d86d25cf/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list