xmlrpc-c 1.16.33-3.1ubuntu5.2 source package in Ubuntu

Changelog

xmlrpc-c (1.16.33-3.1ubuntu5.2) precise-security; urgency=medium

  * SECURITY UPDATE: integer overflows in xmlrpc_XML_GetBuffer
    - debian/patches/CVE-2015-1283.patch: add checks to
      lib/expat/xmlparse/xmlparse.c.
    - CVE-2015-1283
  * SECURITY UPDATE: integer overflows in xmlrpc_XML_GetBuffer
    - debian/patches/CVE-2016-4472.patch: improved existing fix in
      lib/expat/xmlparse/xmlparse.c.
    - CVE-2016-4472
  * SECURITY UPDATE: unanticipated internal calls to srand
    - debian/patches/CVE-2012-6702-1.patch: remove srand, use more entropy
      in lib/expat/xmlparse/xmlparse.c.
    - debian/patches/CVE-2012-6702-2.patch: use a prime that fits 32bits
      on 32bit platforms in lib/expat/xmlparse/xmlparse.c.
    - CVE-2012-6702
  * SECURITY UPDATE: use of too little entropy
    - debian/patches/CVE-2016-5300-1.patch: extract method
      gather_time_entropy in lib/expat/xmlparse/xmlparse.c.
    - debian/patches/CVE-2016-5300-2.patch: extract entropy from
      XML_Parser address in lib/expat/xmlparse/xmlparse.c.
    - CVE-2016-5300
  * SECURITY UPDATE: denial of service and possible code execution via
    malformed documents
    - debian/patches/CVE-2016-0718.patch: fix out of bounds memory access
      and integer overflow in lib/expat/xmlparse/xmlparse.c,
      lib/expat/xmltok/xmltok.c, lib/expat/xmltok/xmltok.h,
      lib/expat/xmltok/xmltok_impl.c.
    - CVE-2016-0718

 -- Marc Deslauriers <email address hidden>  Tue, 14 Jun 2016 16:23:39 +0300

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Precise
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Precise updates main libs
Precise security main libs

Downloads

File Size SHA-256 Checksum
xmlrpc-c_1.16.33.orig.tar.gz 708.1 KiB ebc388535d7d178f8225a7538898c671fc99e678975142dc141ee67440089447
xmlrpc-c_1.16.33-3.1ubuntu5.2.diff.gz 28.4 KiB 53346aa34b76fede7bce56dbb1c7b3fd2f3ebdc942fcde61973cb17afeee303c
xmlrpc-c_1.16.33-3.1ubuntu5.2.dsc 2.2 KiB f2e94b5f4d2da7252e3d8b7df49e3c14e6a652ccced6e4a77b173a01bbcd87cc

View changes file

Binary packages built by this source

libxmlrpc-c++4: lightweight RPC library based on XML and HTTP [C++ runtime libraries]

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This library provides a modular implementation of XML-RPC for C++.

libxmlrpc-c++4-dbgsym: debug symbols for package libxmlrpc-c++4

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This library provides a modular implementation of XML-RPC for C++.

libxmlrpc-c++4-dev: lightweight RPC library based on XML and HTTP [C++ development libraries]

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This library provides a modular implementation of XML-RPC for C++.
 .
 Install this package if you wish to develop your own programs using this
 library.

libxmlrpc-c3-dev: lightweight RPC library based on XML and HTTP [transitional package]

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This is an empty package for transitional purposes, and can be safely
 removed.

libxmlrpc-core-c3: lightweight RPC library based on XML and HTTP [C runtime libraries]

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This library provides a modular implementation of XML-RPC for C.

libxmlrpc-core-c3-dbgsym: debug symbols for package libxmlrpc-core-c3

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This library provides a modular implementation of XML-RPC for C.

libxmlrpc-core-c3-dev: lightweight RPC library based on XML and HTTP [C development libraries]

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This library provides a modular implementation of XML-RPC for C.
 .
 Install this package if you wish to develop your own programs using this
 library.

libxmlrpc-core-c3-dev-dbgsym: debug symbols for package libxmlrpc-core-c3-dev

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This library provides a modular implementation of XML-RPC for C.
 .
 Install this package if you wish to develop your own programs using this
 library.

libxmlrpc-core-c3-udeb: A lightweight RPC library based on XML and HTTP (core libraries)

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This library provides a modular implementation of XML-RPC for C and C++.
 .
 This package contains the minimal runtime libraries for the Debian Installer
 (udeb).

libxmlrpc-core-c3-udeb-dbgsym: debug symbols for package libxmlrpc-core-c3-udeb

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This library provides a modular implementation of XML-RPC for C and C++.
 .
 This package contains the minimal runtime libraries for the Debian Installer
 (udeb).

xmlrpc-api-utils: Generate C++ wrapper classes for XML-RPC servers

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This package contains two programs:
  * xml-rpc-api2cpp, a utility for generating C++ wrapper classes based
    on an XML-RPC API, obtained by interrogating an XML-RPC server.
  * xml-rpc-api2txt, a utility for printing out an XML-RPC API as a
    text file. The API is obtained by interrogating an XML-RPC server.

xmlrpc-api-utils-dbgsym: debug symbols for package xmlrpc-api-utils

 XML-RPC is a quick-and-easy way to make procedure calls over the Internet.
 It converts the procedure call into an XML document, sends it to a remote
 server using HTTP, and gets back the response as XML.
 .
 This package contains two programs:
  * xml-rpc-api2cpp, a utility for generating C++ wrapper classes based
    on an XML-RPC API, obtained by interrogating an XML-RPC server.
  * xml-rpc-api2txt, a utility for printing out an XML-RPC API as a
    text file. The API is obtained by interrogating an XML-RPC server.