[ubuntu/lucid-security] libxml2 2.7.6.dfsg-1ubuntu1.3 (Accepted)

Jamie Strandboge jamie at ubuntu.com
Thu Jan 19 17:34:32 UTC 2012


libxml2 (2.7.6.dfsg-1ubuntu1.3) lucid-security; urgency=low

  * SECURITY UPDATE: fix off-by-one leading to denial of service
    - encoding.c: adjust calculation of space available
    - 69f04562f75212bfcabecd190ea8b06ace28ece2
    - CVE-2011-0216
  * SECURITY UPDATE: fix double free in XPath evaluation
    - xpath.h, xpath.c: add a mechanism of frame for XPath evaluation when
      entering a function or a scoped evaluation
    - f5048b3e71fc30ad096970b8df6e7af073bae4cb
    - CVE-2011-2821
  * SECURITY UPDATE: fix double free in XPath evaluation
    - xpath.c: fix missing error status in XPath evaluation
    - 1d4526f6f4ec8d18c40e2a09b387652a6c1aa2cd
    - CVE-2011-2834
  * SECURITY UPDATE: fix out of bounds read
    - parser.c: make sure the parser returns when getting a Stop order
    - 77404b8b69bc122d12231807abf1a837d121b551
    - CVE-2011-3905
  * SECURITY UPDATE: fix heap overflow
    - parser.c: fix an allocation error when copying entities
    - 5bd3c061823a8499b27422aee04ea20aae24f03e
    - CVE-2011-3919

Date: Wed, 18 Jan 2012 13:48:59 -0600
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/libxml2/2.7.6.dfsg-1ubuntu1.3
-------------- next part --------------
Format: 1.8
Date: Wed, 18 Jan 2012 13:48:59 -0600
Source: libxml2
Binary: libxml2 libxml2-udeb libxml2-utils libxml2-dev libxml2-dbg libxml2-doc python-libxml2 python-libxml2-dbg
Architecture: source
Version: 2.7.6.dfsg-1ubuntu1.3
Distribution: lucid-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description: 
 libxml2    - GNOME XML library
 libxml2-dbg - Debugging symbols for the GNOME XML library
 libxml2-dev - Development files for the GNOME XML library
 libxml2-doc - Documentation for the GNOME XML library
 libxml2-udeb - GNOME XML library (udeb)
 libxml2-utils - XML utilities
 python-libxml2 - Python bindings for the GNOME XML library
 python-libxml2-dbg - Python bindings for the GNOME XML library (debug extension)
Changes: 
 libxml2 (2.7.6.dfsg-1ubuntu1.3) lucid-security; urgency=low
 .
   * SECURITY UPDATE: fix off-by-one leading to denial of service
     - encoding.c: adjust calculation of space available
     - 69f04562f75212bfcabecd190ea8b06ace28ece2
     - CVE-2011-0216
   * SECURITY UPDATE: fix double free in XPath evaluation
     - xpath.h, xpath.c: add a mechanism of frame for XPath evaluation when
       entering a function or a scoped evaluation
     - f5048b3e71fc30ad096970b8df6e7af073bae4cb
     - CVE-2011-2821
   * SECURITY UPDATE: fix double free in XPath evaluation
     - xpath.c: fix missing error status in XPath evaluation
     - 1d4526f6f4ec8d18c40e2a09b387652a6c1aa2cd
     - CVE-2011-2834
   * SECURITY UPDATE: fix out of bounds read
     - parser.c: make sure the parser returns when getting a Stop order
     - 77404b8b69bc122d12231807abf1a837d121b551
     - CVE-2011-3905
   * SECURITY UPDATE: fix heap overflow
     - parser.c: fix an allocation error when copying entities
     - 5bd3c061823a8499b27422aee04ea20aae24f03e
     - CVE-2011-3919
Checksums-Sha1: 
 aa2b7b438e7870f68f6d423abe93c692a2717761 2280 libxml2_2.7.6.dfsg-1ubuntu1.3.dsc
 8a1be52553a9e07b783bb9530eed1e3e7cfd2e02 114159 libxml2_2.7.6.dfsg-1ubuntu1.3.diff.gz
Checksums-Sha256: 
 07ed56f1a002c310ec0b263fb392ac0da3a163a09601aa71e6dda6eb8bbe1249 2280 libxml2_2.7.6.dfsg-1ubuntu1.3.dsc
 bb30e005bbbbc5087f72e08073cffbb7f752d43a90e0dd793e6b7004ec7f7e6d 114159 libxml2_2.7.6.dfsg-1ubuntu1.3.diff.gz
Files: 
 02b054c8c28784262f0eb53d82dd45ec 2280 libs optional libxml2_2.7.6.dfsg-1ubuntu1.3.dsc
 ae0bd75705b7bd7ca73cf97c8558a730 114159 libs optional libxml2_2.7.6.dfsg-1ubuntu1.3.diff.gz
Original-Maintainer: Debian XML/SGML Group <debian-xml-sgml-pkgs at lists.alioth.debian.org>


More information about the Lucid-changes mailing list