[ubuntu/mantic-updates] xerces-c 3.2.4+debian-1ubuntu0.23.10.1 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Tue Jan 16 12:28:18 UTC 2024


xerces-c (3.2.4+debian-1ubuntu0.23.10.1) mantic-security; urgency=medium

  * SECURITY UPDATE: use-after-free on external DTD scan
    - debian/patches/CVE-2018-1311-mitigation.patch: remove CVE-2018-1311 fix
      that also introduces memory leak.
    - debian/patches/series: update series file to remove
      CVE-2018-1311-mitigation.patch from the patch list.
    - debian/patches/CVE-2018-1311.patch: resolve issue XERCESC-2188.
    - CVE-2018-1311

Date: 2024-01-12 11:39:09.626196+00:00
Changed-By: Camila Camargo de Matos <camila.camargodematos at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/xerces-c/3.2.4+debian-1ubuntu0.23.10.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the mantic-changes mailing list