Skip to content
Snippets Groups Projects
Commit 92e2e98a authored by importbot's avatar importbot
Browse files

import expat-2.5.0-3.el9_5.3

parent 18653384
No related branches found
No related tags found
No related merge requests found
8b3c398f73e7cfb93de1c34252c19ebd0efe4232e9b921bd01f11442b5dec8d5
7fe4d7bb620cf784d2b603266e81a86e318bd7304fd502ba8c032a13d90e8919
This diff is collapsed.
......@@ -3,7 +3,7 @@
Summary: An XML parser library
Name: expat
Version: %(echo %{unversion} | sed 's/_/./g')
Release: 3%{?dist}.1
Release: 3%{?dist}.3
Source: https://github.com/libexpat/libexpat/archive/R_%{unversion}.tar.gz#/expat-%{version}.tar.gz
URL: https://libexpat.github.io/
License: MIT
......@@ -21,6 +21,8 @@ Patch3: expat-2.5.0-CVE-2024-45491.patch
Patch4: expat-2.5.0-CVE-2024-45492.patch
# https://issues.redhat.com/browse/RHEL-65064
Patch5: expat-2.5.0-CVE-2024-50602.patch
# https://github.com/libexpat/libexpat/pull/973
Patch6: expat-2.5.0-CVE-2024-8176.patch
%description
This is expat, the C library for parsing XML, written by James Clark. Expat
......@@ -55,6 +57,7 @@ pushd ..
%patch3 -p1 -b .CVE-2024-45491
%patch4 -p1 -b .CVE-2024-45492
%patch5 -p1 -b .CVE-2024-50602
%patch6 -p1 -b .CVE-2024-8176
popd
sed -i 's/install-data-hook/do-nothing-please/' lib/Makefile.am
......@@ -103,6 +106,14 @@ make check
%{_libdir}/lib*.a
%changelog
* Mon Mar 31 2025 Tomas Korbar <tkorbar@redhat.com> - 2.5.0-3.3
- Improve fix for CVE-2024-8176
- Resolves: RHEL-57488
* Mon Mar 24 2025 Tomas Korbar <tkorbar@redhat.com> - 2.5.0-3.2
- Fix CVE-2024-8176
- Resolves: RHEL-57488
* Thu Nov 07 2024 Tomas Korbar <tkorbar@redhat.com> - 2.5.0-3.1
- Fix CVE-2024-50602
- Resolves: RHEL-65064
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment