fop 1:1.1.dfsg-2ubuntu1.1 source package in Ubuntu

Changelog

fop (1:1.1.dfsg-2ubuntu1.1) trusty-security; urgency=medium

  * SECURITY UPDATE: SSRF through external DTD resolution
    - debian/patches/CVE-2017-5661.patch: disable external DTD resolution
      in src/java/org/apache/fop/cli/InputHandler.java,
      src/java/org/apache/fop/servlet/FopServlet.java.
    - Thanks to Debian for the patch backport.
    - CVE-2017-5661

 -- Marc Deslauriers <email address hidden>  Thu, 04 May 2017 12:56:32 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Trusty
Original maintainer:
Ubuntu Developers
Architectures:
all
Section:
text
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Trusty updates main text
Trusty security main text

Builds

Trusty: [FULLYBUILT] i386

Downloads

File Size SHA-256 Checksum
fop_1.1.dfsg.orig.tar.gz 13.3 MiB 7f0e836c9d0e5f855054b3629775311b4099a8b386539252f82b5a5b501cc6b4
fop_1.1.dfsg-2ubuntu1.1.debian.tar.gz 830.6 KiB e370098a9aa684e1dbee52d52ad20fe90a989d7cd478103db7aee9e1f2e741c1
fop_1.1.dfsg-2ubuntu1.1.dsc 2.5 KiB 321db7a7d197877cd9b8c2feab6bce5ffc8a4622901c61cca635a43a9b29115d

View changes file

Binary packages built by this source

fop: XML formatter driven by XSL Formatting Objects (XSL-FO.)

 FOP is a Java application that reads a formatting object tree and then
 turns it into a wide variety of output presentations (including AFP,
 PCL, PDF, PNG, PostScript, RTF, TIFF, and plain text), or displays
 the result on-screen.
 .
 The formatting object tree can be in the form of an XML document
 (output by an XSLT engine like xalan) or can be passed in memory as a
 DOM Document or (in the case of xalan) SAX events.
 .
 This package contains the fop command line tool

fop-doc: XML formatter driven by XSL Formatting Objects (doc)

 FOP is a Java application that reads a formatting object tree and then
 turns it into a wide variety of output presentations (including AFP,
 PCL, PDF, PNG, PostScript, RTF, TIFF, and plain text), or displays
 the result on-screen.
 .
 The formatting object tree can be in the form of an XML document
 (output by an XSLT engine like xalan) or can be passed in memory as a
 DOM Document or (in the case of xalan) SAX events.
 .
 This package contains the documentation.

libfop-java: XML formatter driven by XSL Formatting Objects (XSL-FO.)

 FOP is a Java application that reads a formatting object tree and then
 turns it into a wide variety of output presentations (including AFP,
 PCL, PDF, PNG, PostScript, RTF, TIFF, and plain text), or displays
 the result on-screen.
 .
 The formatting object tree can be in the form of an XML document
 (output by an XSLT engine like xalan) or can be passed in memory as a
 DOM Document or (in the case of xalan) SAX events.
 .
 This package contains the fop jar file