Format: 1.8 Date: Fri, 15 Sep 2017 16:19:46 -0700 Source: libxml2 Binary: libxml2 libxml2-utils libxml2-utils-dbg libxml2-dev libxml2-dbg libxml2-doc python-libxml2 python-libxml2-dbg libxml2-udeb Architecture: ppc64el Version: 2.9.1+dfsg1-3ubuntu4.10 Distribution: trusty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Steve Beattie Description: libxml2 - GNOME XML library libxml2-dbg - Debugging symbols for the GNOME XML library libxml2-dev - Development files for the GNOME XML library libxml2-doc - Documentation for the GNOME XML library libxml2-udeb - GNOME XML library - minimal runtime (udeb) libxml2-utils - XML utilities libxml2-utils-dbg - XML utilities (debug extension) python-libxml2 - Python bindings for the GNOME XML library python-libxml2-dbg - Python bindings for the GNOME XML library (debug extension) Changes: libxml2 (2.9.1+dfsg1-3ubuntu4.10) trusty-security; urgency=medium . * SECURITY UPDATE: type confusion leading to out-of-bounds write - debian/patches/CVE-2017-0663.patch: eliminate cast - CVE-2017-0663 * SECURITY UPDATE: XML external entity (XXE) vulnerability - debian/patches/CVE-2017-7375.patch: add validation for parsed entity references - CVE-2017-7375 * SECURITY UPDATE: buffer overflow in URL handling - debian/patches/CVE-2017-7376.patch: allocate enough memory for ports in HTTP redirect support - CVE-2017-7376 * SECURITY UPDATE: buffer overflows in xmlSnprintfElementContent() - debian/patches/CVE-2017-9047-9048.patch: ensure enough space remains in buffer for copied data - CVE-2017-9047, CVE-2017-9048 * SECURITY UPDATE: heap based buffer overreads in xmlDictComputeFastKey() - debian/patches/CVE-2017-9049-9050.patch: drop uneccessary expansions, add additional sanity check - CVE-2017-9049, CVE-2017-9050 Checksums-Sha1: f9b2198373b13443e8435e080f80d7772a46ae7d 604418 libxml2_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb 0268036a81280f8cb24b0385723b6d28ab99b49e 33712 libxml2-utils_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb ff17a9ea3bcc8d1c9a470e59ad9a7ead85d472a2 71962 libxml2-utils-dbg_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb b50ef08721f1b7cefb3ad8888d4ccb8c67ad8cb6 696422 libxml2-dev_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb e3acd7df695df96298a42332be578d873d89b60e 1776204 libxml2-dbg_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb ae45acf14bb360ecd852770ed347690ec883cb63 130272 python-libxml2_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb e38e3a13f2851c4bc7b07d3b4a82444aaaaf259e 256632 python-libxml2-dbg_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb 026b049f2c246615a94e45546738b1c55ff18e40 551460 libxml2-udeb_2.9.1+dfsg1-3ubuntu4.10_ppc64el.udeb 51e27a43559bb6526dd16c65f205a0346ef48d85 1060 libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb c95a4f67fd5959ff649ed777872ee8d426e5e7b8 1090 libxml2-utils-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb 28d9752247cf3abfc93d63f38892c847b2c161ea 1060 libxml2-dev-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb 2081d6dadf3ed870dd52db3b6d4bdc36503bd5bb 1056 python-libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb 80276a89fe65e795bdb30880f5fd6bcb8af755a1 1054 libxml2-udeb-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb Checksums-Sha256: a9e98540cd666559a321a7c580ea426633f951afdeb4bf58a0f5f331e01a7975 604418 libxml2_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb 2d34fe5bfb446de8910b336b6165fad7c6491064fd6ec2236162ae5f729906c6 33712 libxml2-utils_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb d8d8b280948dc7ba18016c827e270690ef16c5c9c5917e716c09cfc3eb0767e1 71962 libxml2-utils-dbg_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb e4c3052999cdc0a49b017c93c8de7eb1d37265bee74b32f53feb571f3c2cbc41 696422 libxml2-dev_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb a5018a0c8df8958a0920a6e84c0dca659c4be8aab12650665c2fcf57adc21104 1776204 libxml2-dbg_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb 8765a65757b655468829318c29e694ac4a4d9a5c29b97507443d93d7066a19b1 130272 python-libxml2_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb 12d12a7f158bfc3c3f1af5c6c27bf7680890492b24d6c8a6448bda303d13c79d 256632 python-libxml2-dbg_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb a850b4217b7aa5a6116d1b7735459ed6d6b428f39b23778618d32e0efdf39da9 551460 libxml2-udeb_2.9.1+dfsg1-3ubuntu4.10_ppc64el.udeb cb48f66b7c87e0ce04ffd63531d84af3b085d36a75161272c9a1538e3ac31848 1060 libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb 0199998b7455ead8dab447149b9cd8c702a63bce92d709e0156566c306b3d5fb 1090 libxml2-utils-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb f657d368a120c1c77107b56ea74e1082864130f90911b7677a5939ae62f12de4 1060 libxml2-dev-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb f2fa6a4fbec8aaf1e67830c80e5faad083ee246557f087827d9d307cdcbf9deb 1056 python-libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb 5897c4d25de25ce518e53f7e16e9a2e0ec3b9a0bcb5036bd6899b842d3c5a2c6 1054 libxml2-udeb-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb Files: ce3f4a246d5976ecd4950dab85bb6686 604418 libs standard libxml2_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb e82520f97ce3f84cfda1ac5aa2e17a57 33712 text optional libxml2-utils_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb 892fea9ab04f9522a094920f963845c8 71962 debug extra libxml2-utils-dbg_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb 32174cdb7d7ceee75845e46f53745c81 696422 libdevel optional libxml2-dev_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb 2aafce9afc938ac37add70448698ffd1 1776204 debug extra libxml2-dbg_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb d1155d38bd6e9254aff4b2e8488854a8 130272 python optional python-libxml2_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb 6e64bd07844ebb156dd650f756405c26 256632 debug extra python-libxml2-dbg_2.9.1+dfsg1-3ubuntu4.10_ppc64el.deb b16e610d26ac3dc6352ccbd598419754 551460 debian-installer optional libxml2-udeb_2.9.1+dfsg1-3ubuntu4.10_ppc64el.udeb 3681236fb8b85a915112cc818761e6da 1060 libs extra libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb d63c7244c55435eaf3b6c7164e00fe99 1090 text extra libxml2-utils-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb 17062fed80bd800016815193d2a747a4 1060 libdevel extra libxml2-dev-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb c86f0c407e9090eae6711f8a0d9bf17a 1056 python extra python-libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb c18b8d4f1ca71e4ce8d98b089bf13fb1 1054 debian-installer extra libxml2-udeb-dbgsym_2.9.1+dfsg1-3ubuntu4.10_ppc64el.ddeb Original-Maintainer: Debian XML/SGML Group Package-Type: udeb