libxml2 2.9.4+dfsg1-2.2ubuntu0.1 source package in Ubuntu

Changelog

libxml2 (2.9.4+dfsg1-2.2ubuntu0.1) zesty-security; urgency=medium

  * SECURITY UPDATE: type confusion leading to out-of-bounds write
    - debian/patches/CVE-2017-0663.patch: eliminate cast
    - CVE-2017-0663
  * SECURITY UPDATE: XML external entity (XXE) vulnerability
    - debian/patches/CVE-2017-7375.patch: add validation for parsed
      entity references
    - CVE-2017-7375
  * SECURITY UPDATE: buffer overflow in URL handling
    - debian/patches/CVE-2017-7376.patch: allocate enough memory for
      ports in HTTP redirect support
    - CVE-2017-7376
  * SECURITY UPDATE: buffer overflows in xmlSnprintfElementContent()
    - debian/patches/CVE-2017-9047-9048.patch: ensure enough space
      remains in buffer for copied data
    - CVE-2017-9047, CVE-2017-9048
  * SECURITY UPDATE: heap based buffer overreads in
    xmlDictComputeFastKey()
    - debian/patches/CVE-2017-9049-9050.patch: drop uneccessary
      expansions, add additional sanity check
    - CVE-2017-9049, CVE-2017-9050

 -- Steve Beattie <email address hidden>  Fri, 15 Sep 2017 16:13:37 -0700

Upload details

Uploaded by:
Steve Beattie on 2017-09-16
Uploaded to:
Zesty
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
libxml2_2.9.4+dfsg1.orig.tar.xz 2.3 MiB a74ad55e346aa0b2b41903e66d21f8f3d2a736b3f41e32496376861ab484184e
libxml2_2.9.4+dfsg1-2.2ubuntu0.1.debian.tar.xz 33.0 KiB 122be68424c64283089ef9dc48b542c4298aac63c45015c113ccb92133095e67
libxml2_2.9.4+dfsg1-2.2ubuntu0.1.dsc 3.0 KiB 514d7755e0336753c246e8b77b2e53d13f8b4386ee595c52f9581a98bd564420

View changes file

Binary packages built by this source

libxml2: No summary available for libxml2 in ubuntu zesty.

No description available for libxml2 in ubuntu zesty.

libxml2-dbg: No summary available for libxml2-dbg in ubuntu zesty.

No description available for libxml2-dbg in ubuntu zesty.

libxml2-dbgsym: No summary available for libxml2-dbgsym in ubuntu zesty.

No description available for libxml2-dbgsym in ubuntu zesty.

libxml2-dev: No summary available for libxml2-dev in ubuntu zesty.

No description available for libxml2-dev in ubuntu zesty.

libxml2-dev-dbgsym: No summary available for libxml2-dev-dbgsym in ubuntu zesty.

No description available for libxml2-dev-dbgsym in ubuntu zesty.

libxml2-doc: No summary available for libxml2-doc in ubuntu zesty.

No description available for libxml2-doc in ubuntu zesty.

libxml2-udeb: No summary available for libxml2-udeb in ubuntu zesty.

No description available for libxml2-udeb in ubuntu zesty.

libxml2-udeb-dbgsym: No summary available for libxml2-udeb-dbgsym in ubuntu zesty.

No description available for libxml2-udeb-dbgsym in ubuntu zesty.

libxml2-utils: No summary available for libxml2-utils in ubuntu zesty.

No description available for libxml2-utils in ubuntu zesty.

libxml2-utils-dbg: No summary available for libxml2-utils-dbg in ubuntu zesty.

No description available for libxml2-utils-dbg in ubuntu zesty.

libxml2-utils-dbgsym: No summary available for libxml2-utils-dbgsym in ubuntu zesty.

No description available for libxml2-utils-dbgsym in ubuntu zesty.

python-libxml2: No summary available for python-libxml2 in ubuntu zesty.

No description available for python-libxml2 in ubuntu zesty.

python-libxml2-dbg: No summary available for python-libxml2-dbg in ubuntu zesty.

No description available for python-libxml2-dbg in ubuntu zesty.

python3-libxml2: No summary available for python3-libxml2 in ubuntu zesty.

No description available for python3-libxml2 in ubuntu zesty.

python3-libxml2-dbg: No summary available for python3-libxml2-dbg in ubuntu zesty.

No description available for python3-libxml2-dbg in ubuntu zesty.