Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
RHSA-2026:3407
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2026:3407
Import Source
https://security.access.redhat.com/data/osv/RHSA-2026:3407.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2026:3407
Upstream
CVE-2025-59375
Published
2026-02-27T10:25:35Z
Modified
2026-03-13T10:16:50Z
Severity
5.3 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CVSS Calculator
Summary
Red Hat Security Advisory: mingw-fontconfig security update
Details
References
https://access.redhat.com/errata/RHSA-2026:3407
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=2395108
https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_3407.json
https://access.redhat.com/security/cve/CVE-2025-59375
https://www.cve.org/CVERecord?id=CVE-2025-59375
https://nvd.nist.gov/vuln/detail/CVE-2025-59375
https://github.com/libexpat/libexpat/blob/676a4c531ec768732fac215da9730b5f50fbd2bf/expat/Changes#L45-L74
https://github.com/libexpat/libexpat/issues/1018
https://github.com/libexpat/libexpat/pull/1034
https://issues.oss-fuzz.com/issues/439133977
Affected packages
Red Hat:enterprise_linux:8::crb
mingw-fontconfig
Package
Name
mingw-fontconfig
Purl
pkg:rpm/redhat/mingw-fontconfig
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.6-4.el8_10
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:3407.json"
mingw32-fontconfig
Package
Name
mingw32-fontconfig
Purl
pkg:rpm/redhat/mingw32-fontconfig
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.6-4.el8_10
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:3407.json"
mingw32-fontconfig-debuginfo
Package
Name
mingw32-fontconfig-debuginfo
Purl
pkg:rpm/redhat/mingw32-fontconfig-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.6-4.el8_10
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:3407.json"
mingw64-fontconfig
Package
Name
mingw64-fontconfig
Purl
pkg:rpm/redhat/mingw64-fontconfig
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.6-4.el8_10
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:3407.json"
mingw64-fontconfig-debuginfo
Package
Name
mingw64-fontconfig-debuginfo
Purl
pkg:rpm/redhat/mingw64-fontconfig-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.6-4.el8_10
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:3407.json"
RHSA-2026:3407 - OSV