Description:
CVE-2026-45186 the computational complexity of attribute name collision
checks allows a denial of service via moderately sized crafted XML
input.
- https://bugs.mageia.org/show_bug.cgi?id=35522
- https://www.openwall.com/lists/oss-security/2026/05/11/16
- https://blog.hartwork.org/posts/expat-2-8-1-released/
- https://github.com/libexpat/libexpat/blob/R_2_8_1/expat/Changes
- https://www.cve.org/CVERecord?id=CVE-2026-45186
- 9/core/expat-2.7.5-1.1.mga9
Publication date:12 Jun 2026
Get the latest Linux and open source security news straight to your inbox.