xml-security-c 1.6.1-5+deb7u2 source package in Debian

Changelog

xml-security-c (1.6.1-5+deb7u2) stable-security; urgency=high


  * The attempted fix to address CVE-2013-2154 introduced the possibility
    of a heap overflow, possibly leading to arbitrary code execution, in
    the processing of malformed XPointer expressions in the XML Signature
    Reference processing code.  Apply upstream patch to fix that heap
    overflow.  (Closes: #714241, CVE-2013-2210)

 -- Russ Allbery <email address hidden>  Thu, 27 Jun 2013 13:54:03 -0700

Upload details

Uploaded by:
Debian Shib Team
Uploaded to:
Wheezy
Original maintainer:
Debian Shib Team
Architectures:
any
Section:
libs
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section
Wheezy release main libs

Builds

Downloads

File Size SHA-256 Checksum
xml-security-c_1.6.1-5+deb7u2.dsc 1.8 KiB a5aaeff16e400d7351fde6903fb32733af8c38990365913d42923280cf9a39ec
xml-security-c_1.6.1.orig.tar.gz 844.1 KiB 73931a55d6925a82416ea48f8d6f1b8ed591368e1dfc30574fe43904b7c62fcd
xml-security-c_1.6.1-5+deb7u2.debian.tar.gz 11.7 KiB c0218aa7181316be9fa44753b09c81c5a327e5d6ed01d533f462a37325723789

No changes file available.

Binary packages built by this source