RHEL/CentOS 7 Expat CVE Updates

Update 2 on Expat CVE-2022-25315

Published: 4/8/2022, Last Updated: 4/8/2022 12:50 PM EDT

The AnzoGraph 2.5.2 release resolves CVE-2022-25315.

Update 1 on Expat CVE-2022-25315

Published: 3/1/2022, Last Updated: 3/1/2022 1:50 PM EST

Cambridge Semantics is monitoring activities related to the resolution of CVE-2022-25315 in the Expat library for Red Hat Enterprise Linux and CentOS 7. This vulnerability is an integer overflow flaw in libexpat and affects all bare metal and VM installations of Linux as well as Cambridge Semantics' container images. Cambridge Semantics will address CVE-2022-25315 and release updated images as soon a resolution is available. For more information, see CVE-2022-25315 on the Red Hat Customer Portal.