[ubuntu/natty-security] libxml2 2.7.8.dfsg-2ubuntu0.2 (Accepted)

Jamie Strandboge jamie at ubuntu.com
Thu Jan 19 17:33:46 UTC 2012


libxml2 (2.7.8.dfsg-2ubuntu0.2) natty-security; urgency=low

  * SECURITY UPDATE: fix off-by-one leading to denial of service
    - encoding.c: adjust calculation of space available
    - 69f04562f75212bfcabecd190ea8b06ace28ece2
    - CVE-2011-0216
  * SECURITY UPDATE: fix double free in XPath evaluation
    - xpath.h, xpath.c: add a mechanism of frame for XPath evaluation when
      entering a function or a scoped evaluation
    - f5048b3e71fc30ad096970b8df6e7af073bae4cb
    - CVE-2011-2821
  * SECURITY UPDATE: fix double free in XPath evaluation
    - xpath.c: fix missing error status in XPath evaluation
    - 1d4526f6f4ec8d18c40e2a09b387652a6c1aa2cd
    - CVE-2011-2834
  * SECURITY UPDATE: fix out of bounds read
    - parser.c: make sure the parser returns when getting a Stop order
    - 77404b8b69bc122d12231807abf1a837d121b551
    - CVE-2011-3905
  * SECURITY UPDATE: fix heap overflow
    - parser.c: fix an allocation error when copying entities
    - 5bd3c061823a8499b27422aee04ea20aae24f03e
    - CVE-2011-3919

Date: Wed, 18 Jan 2012 13:40:28 -0600
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/libxml2/2.7.8.dfsg-2ubuntu0.2
-------------- next part --------------
Format: 1.8
Date: Wed, 18 Jan 2012 13:40:28 -0600
Source: libxml2
Binary: libxml2 libxml2-utils libxml2-dev libxml2-dbg libxml2-doc python-libxml2 python-libxml2-dbg libxml2-udeb
Architecture: source
Version: 2.7.8.dfsg-2ubuntu0.2
Distribution: natty-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description: 
 libxml2    - GNOME XML library
 libxml2-dbg - Debugging symbols for the GNOME XML library
 libxml2-dev - Development files for the GNOME XML library
 libxml2-doc - Documentation for the GNOME XML library
 libxml2-udeb - GNOME XML library - minimal runtime (udeb)
 libxml2-utils - XML utilities
 python-libxml2 - Python bindings for the GNOME XML library
 python-libxml2-dbg - Python bindings for the GNOME XML library (debug extension)
Changes: 
 libxml2 (2.7.8.dfsg-2ubuntu0.2) natty-security; urgency=low
 .
   * SECURITY UPDATE: fix off-by-one leading to denial of service
     - encoding.c: adjust calculation of space available
     - 69f04562f75212bfcabecd190ea8b06ace28ece2
     - CVE-2011-0216
   * SECURITY UPDATE: fix double free in XPath evaluation
     - xpath.h, xpath.c: add a mechanism of frame for XPath evaluation when
       entering a function or a scoped evaluation
     - f5048b3e71fc30ad096970b8df6e7af073bae4cb
     - CVE-2011-2821
   * SECURITY UPDATE: fix double free in XPath evaluation
     - xpath.c: fix missing error status in XPath evaluation
     - 1d4526f6f4ec8d18c40e2a09b387652a6c1aa2cd
     - CVE-2011-2834
   * SECURITY UPDATE: fix out of bounds read
     - parser.c: make sure the parser returns when getting a Stop order
     - 77404b8b69bc122d12231807abf1a837d121b551
     - CVE-2011-3905
   * SECURITY UPDATE: fix heap overflow
     - parser.c: fix an allocation error when copying entities
     - 5bd3c061823a8499b27422aee04ea20aae24f03e
     - CVE-2011-3919
Checksums-Sha1: 
 7b2a4909595f850e473ab7cb6e73c39698db2afd 2287 libxml2_2.7.8.dfsg-2ubuntu0.2.dsc
 37fa64bfd3d577e2bd111d2e5e0a52df2bd71509 114315 libxml2_2.7.8.dfsg-2ubuntu0.2.diff.gz
Checksums-Sha256: 
 f08f6dde4f33cddb9e74ecc093f3678f05cdcb396cb0a44b2afad7fa83035532 2287 libxml2_2.7.8.dfsg-2ubuntu0.2.dsc
 633995d7950027e834818586d2e016c3d8f6ee41b75ef7c9bbf275d95b794192 114315 libxml2_2.7.8.dfsg-2ubuntu0.2.diff.gz
Files: 
 89cdd8aba11f8d0c8eb6906b0366e581 2287 libs optional libxml2_2.7.8.dfsg-2ubuntu0.2.dsc
 c2f9c4333c1c599a96f938f7444bd54c 114315 libs optional libxml2_2.7.8.dfsg-2ubuntu0.2.diff.gz
Original-Maintainer: Debian XML/SGML Group <debian-xml-sgml-pkgs at lists.alioth.debian.org>


More information about the Natty-changes mailing list