[ubuntu/xenial-security] expat 2.1.0-7ubuntu0.16.04.4 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Wed Jun 26 18:40:53 UTC 2019


expat (2.1.0-7ubuntu0.16.04.4) xenial-security; urgency=medium

  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2018-20843.patch: adds a break in
      setElementTypePrefix avoiding consume a high amount of RAM
      and CPU in lib/xmlparser.c
    - CVE-2018-20843

Date: 2019-06-26 17:00:18.886819+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/expat/2.1.0-7ubuntu0.16.04.4
-------------- next part --------------
Sorry, changesfile not available.


More information about the Xenial-changes mailing list