libexpat in Expat before 2.7.2 allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing.
This issue has been addressed in the following products: Red Hat JBoss Core Services 2.4.62.SP2 Via RHSA-2025:19020 https://access.redhat.com/errata/RHSA-2025:19020
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:19403 https://access.redhat.com/errata/RHSA-2025:19403