SIGN IN SIGN UP

gh-145986: Avoid unbound C recursion in `conv_content_model` in `pyexpat.c` (CVE 2026-4224) (#145987)

Fix C stack overflow (CVE-2026-4224) when an Expat parser
with a registered `ElementDeclHandler` parses inline DTD
containing deeply nested content model.

---------

Co-authored-by: Bénédikt Tran <10796600+picnixz@users.noreply.github.com>
S
Stan Ulbrych committed
eb0e8be3a7e11b87d198a2c3af1ed0eccf532768
Parent: 33044b0
Committed by GitHub <noreply@github.com> on 3/15/2026, 9:46:06 PM