{"id":"CLSA-2024-1735128985","summary":"Fix CVE(s): CVE-2024-50602","details":"   * SECURITY UPDATE: Crash in XML_ResumeParser due to XML_StopParser issue\n     - debian/patches/CVE-2024-50602.patch: Refuse to stop/suspend an unstarted\n       parser due to XML_ERROR_NOT_STARTED\n     - debian/patches/CVE-2024-50602-1.patch: Explicitly specify XML_PARSING in\n       XML_StopParser to ensure correct parsing status handling\n     - debian/patches/CVE-2024-50602-2.patch: Add test_misc_resumeparser_not_crashing\n       and test_misc_stopparser_rejects_unstarted_parser to cover the issue\n     - CVE-2024-50602","modified":"2026-06-04T09:47:34.270469407Z","published":"2024-12-25T12:16:30Z","upstream":["CVE-2024-50602"],"references":[{"type":"ADVISORY","url":"https://errata.cloudlinux.com/ubuntu18-els/CLSA-2024-1735128985.html"}],"affected":[{"package":{"name":"expat","ecosystem":"TuxCare:Ubuntu:18.04","purl":"pkg:deb/tuxcare/expat?distro=ubuntu-18.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.2.5-3ubuntu0.9+tuxcare.els3"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu18.04els/CLSA-2024-1735128985.json"}},{"package":{"name":"libexpat1","ecosystem":"TuxCare:Ubuntu:18.04","purl":"pkg:deb/tuxcare/libexpat1?distro=ubuntu-18.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.2.5-3ubuntu0.9+tuxcare.els3"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu18.04els/CLSA-2024-1735128985.json"}},{"package":{"name":"libexpat1-dev","ecosystem":"TuxCare:Ubuntu:18.04","purl":"pkg:deb/tuxcare/libexpat1-dev?distro=ubuntu-18.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.2.5-3ubuntu0.9+tuxcare.els3"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu18.04els/CLSA-2024-1735128985.json"}}],"schema_version":"1.7.5"}