The libexpat library is vulnerable to a stack overflow due to uncontrolled recursion when processing deeply nested XML entities. This can cause the application to crash, resulting in a denial of service (DoS) or potentially leading to memory corruption, depending on the user's environment and how the library is used. The issue is triggered by supplying a specially crafted XML document designed to create a long chain of recursive entities.
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:3531 https://access.redhat.com/errata/RHSA-2025:3531
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:3913 https://access.redhat.com/errata/RHSA-2025:3913
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:4048 https://access.redhat.com/errata/RHSA-2025:4048