expat 2.6.2-2ubuntu0.1 source package in Ubuntu

Changelog

expat (2.6.2-2ubuntu0.1) oracular-security; urgency=medium

  * SECURITY UPDATE: denial-of-service via XML_ResumeParser
    - debian/patches/CVE-2024-50602-1.patch: Make function XML_StopParser of
      expat/lib/xmlparse.c refuse to stop/suspend an unstarted parser
    - debian/patches/CVE-2024-50602-2.patch: Add XML_PARSING case to parser
      state in function XML_StopParser of expat/lib/xmlparse.c
    - debian/patches/CVE-2024-50602-3.patch: Add tests for CVE-2024-50602 to
      expat/tests/misc_tests.c
    - CVE-2024-50602

 -- Nicolas Campuzano Jimenez <email address hidden>  Thu, 28 Nov 2024 12:41:50 -0500

Upload details

Uploaded by:
nicolas campuzano jimenez
Uploaded to:
Oracular
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
text
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
expat_2.6.2.orig.tar.gz 8.0 MiB fbd032683370d761ba68dba2566d3280a154f5290634172d60a79b24d366d9dc
expat_2.6.2-2ubuntu0.1.debian.tar.xz 16.6 KiB e401036d9becd4ad509d167c2e09c0ce81cc553d3406ff6e043c175b6de775ff
expat_2.6.2-2ubuntu0.1.dsc 2.1 KiB 44dba676f4f9c86e438e7209d0df776ba86251f1f0e021db2067df9eaeb3899d

View changes file

Binary packages built by this source

expat: XML parsing C library - example application

 This package contains xmlwf, an example application of expat, the C
 library for parsing XML. The arguments to xmlwf are one or more
 files which are each to be checked for XML well-formedness.

expat-dbgsym: debug symbols for expat
libexpat1: XML parsing C library - runtime library

 This package contains the runtime, shared library of expat, the C
 library for parsing XML. Expat is a stream-oriented parser in
 which an application registers handlers for things the parser
 might find in the XML document (like start tags).

libexpat1-dbgsym: debug symbols for libexpat1
libexpat1-dev: XML parsing C library - development kit

 This package contains the header file and development libraries of
 expat, the C library for parsing XML. Expat is a stream oriented XML
 parser. This means that you register handlers with the parser prior
 to starting the parse. These handlers are called when the parser
 discovers the associated structures in the document being parsed. A
 start tag is an example of the kind of structures for which you may
 register handlers.