Publishing details

Changelog

libxml2 (2.9.14+dfsg-0.1+ubuntu22.04.1+deb.sury.org+1) jammy; urgency=medium

  * No-change backport to jammy

libxml2 (2.9.14+dfsg-0.1) unstable; urgency=medium

  * Fix multiple security issues:
    + schemas: Fix null-pointer-deref in xmlSchemaCheckCOSSTDerivedOK
    + Fix null deref in xmlSchemaFixupComplexType (CVE-2023-28484)
      (Closes: #1034436)
    + Hashing of empty dict strings isn't deterministic (CVE-2023-29469)
      (Closes: #1034437)
    + Fix integer overflows with XML_PARSE_HUGE (CVE-2022-40303)
      (Closes: #1022224)
    + Fix dict corruption caused by entity reference cycles (CVE-2022-40304)
      (Closes: #1022225)

libxml2 (2.9.14+dfsg-0) unstable; urgency=medium

  * New upstream version 2.9.14+dfsg

 -- Ondřej Surý <email address hidden>  Fri, 21 Apr 2023 17:23:48 +0200

Available diffs

Builds

Built packages

Package files