Format: 1.8 Date: Wed, 15 Mar 2017 07:54:26 -0400 Source: libxml2 Binary: libxml2 libxml2-utils libxml2-utils-dbg libxml2-dev libxml2-dbg libxml2-doc python-libxml2 python-libxml2-dbg libxml2-udeb Architecture: amd64 Version: 2.9.1+dfsg1-3ubuntu4.9 Distribution: trusty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libxml2 - GNOME XML library libxml2-dbg - Debugging symbols for the GNOME XML library libxml2-dev - Development files for the GNOME XML library libxml2-doc - Documentation for the GNOME XML library libxml2-udeb - GNOME XML library - minimal runtime (udeb) libxml2-utils - XML utilities libxml2-utils-dbg - XML utilities (debug extension) python-libxml2 - Python bindings for the GNOME XML library python-libxml2-dbg - Python bindings for the GNOME XML library (debug extension) Changes: libxml2 (2.9.1+dfsg1-3ubuntu4.9) trusty-security; urgency=medium . * SECURITY UPDATE: format string vulnerabilities - debian/patches/CVE-2016-4448-1.patch: fix format string warnings in HTMLparser.c, SAX2.c, catalog.c, configure.in, debugXML.c, encoding.c, entities.c, error.c, include/libxml/parserInternals.h, include/libxml/xmlerror.h, include/libxml/xmlstring.h, libxml.h, parser.c, parserInternals.c, relaxng.c, schematron.c, testModule.c, valid.c, xinclude.c, xmlIO.c, xmllint.c, xmlreader.c, xmlschemas.c, xmlstring.c, xmlwriter.c, xpath.c, xpointer.c. - debian/patches/CVE-2016-4448-2.patch: fix format string warnings in libxml.h, relaxng.c, xmlschemas.c, xmlstring.c. - debian/patches/CVE-2016-4448-3.patch: fix build on pre-C99 compilers in relaxng.c, xmlschemas.c. - debian/libxml2.symbols: added new symbol. - CVE-2016-4448 * SECURITY UPDATE: use-after-free via namespace nodes in XPointer ranges - debian/patches/CVE-2016-4658.patch: disallow namespace nodes in XPointer ranges in xpointer.c. - CVE-2016-4658 * SECURITY UPDATE: use-after-free in XPointer range-to function - debian/patches/CVE-2016-5131-1.patch: fix XPointer paths beginning with range-to in xpath.c, xpointer.c. - debian/patches/CVE-2016-5131-2.patch: fix comparison with root node in xmlXPathCmpNodes in xpath.c. - CVE-2016-5131 Checksums-Sha1: e7ecd3bab8d44d65aa4950ec7a6bf4acf1c25648 573150 libxml2_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 6230bdd3a0e64a798218f643a489ec9791cfeb0d 34714 libxml2-utils_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 7384c4cd3e36a03ae463a7027bfef09663816304 67318 libxml2-utils-dbg_2.9.1+dfsg1-3ubuntu4.9_amd64.deb a68f4fe6fbbb7b2c03f5504480c3beea80a953e1 630848 libxml2-dev_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 72c7206bde8c0627a0c18403b8f2888d2cedc27f 1296420 libxml2-dbg_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 2f7345be5c71d8fec1982762033c2f7bc2dc4e12 138712 python-libxml2_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 113fb8a8dbbfae0f6aa15e34f83967ce972b6c0b 254766 python-libxml2-dbg_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 5987066ff09e22ca751c118ece6f4d32c8a740e1 520228 libxml2-udeb_2.9.1+dfsg1-3ubuntu4.9_amd64.udeb 9358cbc21bcc9f7913c6ad300158ff4ab9cba4e5 1058 libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb 24dc96c4b9941f58eec2499b51bc21feb9df4f7f 1084 libxml2-utils-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb 7fb892f463f6aa9f06826f82c1373312fcfc4d34 1058 libxml2-dev-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb 1966e3dfa0bffcfe72c454fa8120e82ef4aaa068 1054 python-libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb c2f22b48ebc41923a6ecf27d8d2c8ea9e306422b 1050 libxml2-udeb-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb Checksums-Sha256: 4f49bf7ab506db777c096fa5e54b5481d6db0e346137fdefc5a370de2b996a6c 573150 libxml2_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 9312ffec22e268f7d17256a643281fc49fa221babb5e3f57dd52256445f101ca 34714 libxml2-utils_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 61c9f8d2e3466645d05e3472ff03509b1b1fd2ca3a2ee926128b32424045c3c8 67318 libxml2-utils-dbg_2.9.1+dfsg1-3ubuntu4.9_amd64.deb ff6fa0ef87b8e7cedec355a015353b04eb89b7e1f93b226d6225ed6304be8d0e 630848 libxml2-dev_2.9.1+dfsg1-3ubuntu4.9_amd64.deb a103525566bcbc56412fed1c19de8ef64e6b5827bace1533451b286181b23057 1296420 libxml2-dbg_2.9.1+dfsg1-3ubuntu4.9_amd64.deb b2b24fac624049f78a4bcbada4b421c623e3ce443c9dc0470cee087c2575b500 138712 python-libxml2_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 2d1b2bc5c5c62499de85c794dab1fed4fb4bf5fbf1db7e359998e5cc8bd7d5c4 254766 python-libxml2-dbg_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 25b6d6c3e486d5993be210a0bef23edfffab5026f6215af1ace59e47c49cf11a 520228 libxml2-udeb_2.9.1+dfsg1-3ubuntu4.9_amd64.udeb 68a4ccd21279604e16261e5f3186e3aa0490e1212866823bc2a2acc513f4eb5e 1058 libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb 643f4de9708e94f8dadc9fb42c5ff37a4cbee7653e30450984310f2db4592d2a 1084 libxml2-utils-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb 89a1add671408ca0514be9595f7b3a332a71b2c383af9ac0007073dea2a9de90 1058 libxml2-dev-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb f232e98cbce96424680deef881295a6b2591acdaf30803356632ebfb35801a87 1054 python-libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb 0c8528a166ff014bfb6b502aa087c1d49dd677af15b6e6d93a7266a65360d81b 1050 libxml2-udeb-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb Files: 72ce8cf6f3400e5f9f8dc3082da23397 573150 libs standard libxml2_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 834fb45c5ccfc89f203d1889373e2546 34714 text optional libxml2-utils_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 9d57b5f98699ecd989ebb5ea6798c781 67318 debug extra libxml2-utils-dbg_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 64c4133fe32d907664917bfe6fc9a95c 630848 libdevel optional libxml2-dev_2.9.1+dfsg1-3ubuntu4.9_amd64.deb 253323ba653f510231943a2f4588d751 1296420 debug extra libxml2-dbg_2.9.1+dfsg1-3ubuntu4.9_amd64.deb ab9ae6f964000d0cc2283d245cc0539d 138712 python optional python-libxml2_2.9.1+dfsg1-3ubuntu4.9_amd64.deb aeeea5de4f4f986720404aa3740cab57 254766 debug extra python-libxml2-dbg_2.9.1+dfsg1-3ubuntu4.9_amd64.deb cad6a50de49485216e409df115b77de1 520228 debian-installer optional libxml2-udeb_2.9.1+dfsg1-3ubuntu4.9_amd64.udeb f9f4aa556a3ccc97cc9d479f6d619472 1058 libs extra libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb a491fc02d5034ee6d7b1ec623483b906 1084 text extra libxml2-utils-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb 76865208b6323cbabcdb659e1211b07e 1058 libdevel extra libxml2-dev-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb b1d2180b8969570a875dde1bd5979787 1054 python extra python-libxml2-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb cd7fa3705b45ccc3cc507d2b57651370 1050 debian-installer extra libxml2-udeb-dbgsym_2.9.1+dfsg1-3ubuntu4.9_amd64.ddeb Original-Maintainer: Debian XML/SGML Group Package-Type: udeb