[ubuntu/oracular-proposed] expat 2.6.2-2 (Accepted)

Matthias Klose doko at ubuntu.com
Sun Sep 1 06:52:30 UTC 2024


expat (2.6.2-2) unstable; urgency=high

  * Backport security fix for CVE-2024-45490: reject negative len for
    XML_ParseBuffer() (closes: #1080149).
  * Backport security fix for CVE-2024-45491: detect integer overflow in
    dtdCopy() (closes: #1080150).
  * Backport security fix for CVE-2024-45492: detect integer overflow in
    function nextScaffoldPart() (closes: #1080152).

Date: 2024-08-31 16:29:17.547339+00:00
Changed-By: Laszlo Boszormenyi <gcs at debian.org>
Signed-By: Matthias Klose <doko at ubuntu.com>
https://launchpad.net/ubuntu/+source/expat/2.6.2-2
-------------- next part --------------
Sorry, changesfile not available.


More information about the oracular-changes mailing list