FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

expat -- dynamic memory allocations issue

Affected packages
expat2 < 2.7.2

Details

VuXML ID 744966b3-93d8-11f0-b8da-589cfc10a551
Discovery 2025-09-17
Entry 2025-09-17

expat security advisory:

libexpat allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing.

References

CVE Name CVE-2025-59375
URL https://nvd.nist.gov/vuln/detail/CVE-2025-59375