Format: 1.8 Date: Fri, 03 Jun 2016 09:11:38 -0400 Source: libxml2 Binary: libxml2 libxml2-utils libxml2-dev libxml2-dbg libxml2-doc python-libxml2 python-libxml2-dbg libxml2-udeb Architecture: amd64 Version: 2.7.8.dfsg-5.1ubuntu4.15 Distribution: precise Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libxml2 - GNOME XML library libxml2-dbg - Debugging symbols for the GNOME XML library libxml2-dev - Development files for the GNOME XML library libxml2-doc - Documentation for the GNOME XML library libxml2-udeb - GNOME XML library - minimal runtime (udeb) libxml2-utils - XML utilities python-libxml2 - Python bindings for the GNOME XML library python-libxml2-dbg - Python bindings for the GNOME XML library (debug extension) Changes: libxml2 (2.7.8.dfsg-5.1ubuntu4.15) precise-security; urgency=medium . * SECURITY UPDATE: heap-based buffer overread in xmlNextChar - return after error in parser.c. - a7a94612aa3b16779e2c74e1fa353b5d9786c602 - CVE-2016-1762 * SECURITY UPDATE: heap-based buffer overread in htmlCurrentChar - clear up NULL deref, handle 0-length entities and fix tests in parserInternals.c. - ff76eb28c75451bc56e3b93f44dac155ca29e7f5 - fdfeecc1b73b0318466f0d61f0b8881ed9d92dd2 - 0bcd05c5cd83dec3406c8f68b769b1d610c72f76 - CVE-2016-1833 * SECURITY UPDATE: heap-buffer-overflow in xmlStrncat - check for negative lengths in xmlstring.c. - 8fbbf5513d609c1770b391b99e33314cd0742704 - CVE-2016-1834 * SECURITY UPDATE: heap use-after-free in xmlSAX2AttributeNs - add check to parser.c, add tests to result/errors/759020.xml.err, result/errors/759020.xml.str, test/errors/759020.xml. - 38eae571111db3b43ffdeb05487c9f60551906fb - CVE-2016-1835 * SECURITY UPDATE: heap use-after-free in htmlParsePubidLiteral and htmlParseSystemiteral - prevent stable pointer usage in HTMLparser.c. - 11ed4a7a90d5ce156a18980a4ad4e53e77384852 - CVE-2016-1837 * SECURITY UPDATE: heap-based buffer overread in xmlParserPrintFileContextInternal - add bounds check to parser.c, add tests to result/errors/758588.xml.err, result/errors/758588.xml.str, test/errors/758588.xml. - db07dd613e461df93dde7902c6505629bf0734e9 - CVE-2016-1838 * SECURITY UPDATE: heap-based buffer overread in xmlDictAddString - add bounds check to HTMLparser.c. - a820dbeac29d330bae4be05d9ecd939ad6b4aa33 - CVE-2015-8806 - CVE-2016-1839 - CVE-2016-2073 * SECURITY UPDATE: heap-buffer-overflow in xmlFAParsePosCharGroup - properly handle error in xmlregexp.c. - cbb271655cadeb8dbb258a64701d9a3a0c4835b4 - CVE-2016-1840 * SECURITY UPDATE: avoid building recursive entities - properly handle recursion in parser.c, tree.c. - bdd66182ef53fe1f7209ab6535fda56366bd7ac9 - CVE-2016-3627 * SECURITY UPDATE: recursion depth counter issue - properly could recursion depth in parser.c. - 8f30bdff69edac9075f4663ce3b56b0c52d48ce6 - CVE-2016-3705 * SECURITY UPDATE: heap-based buffer-underreads due to xmlParseName - improve error handling in parser.c. - 00906759053986b8079985644172085f74331f83 - CVE-2016-4447 * SECURITY UPDATE: inappropriate fetch of entities content - fix another external entity fetch in parser.c. - b1d34de46a11323fccffa9fadeb33be670d602f5 - CVE-2016-4449 * SECURITY UPDATE: out of bound access when serializing malformed strings - improve string handling in xmlsave.c. - c97750d11bb8b6f3303e7131fe526a61ac65bcfd - CVE-2016-4483 Checksums-Sha1: a4d88dc4fc861b8a10d531150b5f5ca31ccbef74 676882 libxml2_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb b8d27f6d4f79498c11f9f7642bd6a3270036e3c0 39824 libxml2-utils_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb c3a619700b9411a72433b3bb646551fc95850cba 806336 libxml2-dev_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 1a3be9ccf2b44139600b880ddcac06eff250a39f 1377634 libxml2-dbg_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 8285db3c1e19a60ceec15f4242bc933e7feaff76 186592 python-libxml2_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 79001720a2c8df505d3f410456a8e9ca97599d76 389348 python-libxml2-dbg_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb d01cb48e37cb0a3cbe93785d49680482f0c33e39 175306 libxml2-udeb_2.7.8.dfsg-5.1ubuntu4.15_amd64.udeb 726d2e78df41e842af89b35bcfaf3efc53a7b7f3 734112 libxml2-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb d7fae6b15226053ed0b250a6a61597775ec61969 40980 libxml2-utils-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb 981d63ef58d4f14a4d36d5dc64ffeb179579a6ed 117070 python-libxml2-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb f795bc86ff0ac379036c73ca13b9e3e26b787b8f 219774 libxml2-udeb-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb Checksums-Sha256: 26fffe2827c49423254066e31577dd4d760cb8155acbc41ebad69a7df39e2728 676882 libxml2_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb f319929c0cc112278258390590157f304d290ace1e85175f8771997807b74f2e 39824 libxml2-utils_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 069954264641815fbf72cb06585b8ecee6562afa32097127a7e55facec943c0a 806336 libxml2-dev_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 802e47b8f6b83a752cbb7e8ed7acb916670562ddd6fc43edee71b7d812c28937 1377634 libxml2-dbg_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 97a50a1654daff75385f077cbc1a7890ee87218464ef77a5dbf3f5a3b361198e 186592 python-libxml2_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 6e760703b367978468c4dd59de9f15268fbce1addd1140ade308930a91624edc 389348 python-libxml2-dbg_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 2ab6844fa15f8b70746d97ed6a415d479df30c61800730e805eb00ce3c3a707d 175306 libxml2-udeb_2.7.8.dfsg-5.1ubuntu4.15_amd64.udeb d752c401b14759cd63da8a32df99890bdeffc0e6f367e06fc5481ce0411e8549 734112 libxml2-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb 30411079e1e42af89871494fedff6cbc13be23ae8043c09e16c854029c2b5317 40980 libxml2-utils-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb 96e74836272e42a28d84768151f31c02834e7375b51a5d1c074b108a0fadd2dd 117070 python-libxml2-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb 717e4c5e5c8422683dc3f68932e4ef0ab6fde6951702fe9069d55030ee93ee76 219774 libxml2-udeb-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb Files: 0d09d238ed81a7ff400e3c29d7d47218 676882 libs standard libxml2_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb b484ad7647452493c30cf51f5bcb813e 39824 text optional libxml2-utils_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 4ee7cf9f8e555a1c34ca0410a04c1f31 806336 libdevel optional libxml2-dev_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 684a4a2912fe219cb800a0030ad4aba3 1377634 debug extra libxml2-dbg_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb 57353cc1537c8a864ebf199a4a6668e5 186592 python optional python-libxml2_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb f6f03f9a4d79a8e0a9f31e79a20eb77f 389348 debug extra python-libxml2-dbg_2.7.8.dfsg-5.1ubuntu4.15_amd64.deb b88d6aa50352aa7c3da90bd4bcea6842 175306 debian-installer optional libxml2-udeb_2.7.8.dfsg-5.1ubuntu4.15_amd64.udeb c7c3e4670082b4ecdcfdc7d4d8c18af3 734112 libs extra libxml2-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb 43dbc0db5d15781e5243fe9aa46174f3 40980 text extra libxml2-utils-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb b6ec3d269094d09821c1cabebce7a097 117070 python extra python-libxml2-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb 65f77363d45e456f2901bb0377d1048c 219774 debian-installer extra libxml2-udeb-dbgsym_2.7.8.dfsg-5.1ubuntu4.15_amd64.ddeb Original-Maintainer: Debian XML/SGML Group Package-Type: udeb