Format: 1.8 Date: Fri, 03 Jun 2016 08:05:40 -0400 Source: libxml2 Binary: libxml2 libxml2-utils libxml2-utils-dbg libxml2-dev libxml2-dbg libxml2-doc python-libxml2 python-libxml2-dbg libxml2-udeb Architecture: s390x Version: 2.9.3+dfsg1-1ubuntu0.1 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libxml2 - GNOME XML library libxml2-dbg - Debugging symbols for the GNOME XML library libxml2-dev - Development files for the GNOME XML library libxml2-doc - Documentation for the GNOME XML library libxml2-udeb - GNOME XML library - minimal runtime (udeb) libxml2-utils - XML utilities libxml2-utils-dbg - XML utilities (debug extension) python-libxml2 - Python bindings for the GNOME XML library python-libxml2-dbg - Python bindings for the GNOME XML library (debug extension) Changes: libxml2 (2.9.3+dfsg1-1ubuntu0.1) xenial-security; urgency=medium . * SECURITY UPDATE: heap-based buffer overread in xmlNextChar - debian/patches/CVE-2016-1762.patch: return after error in parser.c. - CVE-2016-1762 * SECURITY UPDATE: heap-based buffer overread in htmlCurrentChar - debian/patches/CVE-2016-1833.patch: fix tests in parserInternals.c. - CVE-2016-1833 * SECURITY UPDATE: heap-buffer-overflow in xmlStrncat - debian/patches/CVE-2016-1834.patch: check for negative lengths in xmlstring.c. - CVE-2016-1834 * SECURITY UPDATE: heap use-after-free in xmlSAX2AttributeNs - debian/patches/CVE-2016-1835.patch: add check to parser.c, add tests to result/errors/759020.xml.err, result/errors/759020.xml.str, test/errors/759020.xml. - CVE-2016-1835 * SECURITY UPDATE: heap use-after-free in xmlDictComputeFastKey - debian/patches/CVE-2016-1836.patch: prevent stale pointer usage in parser.c, added tests to result/errors/759398.xml.err, result/errors/759398.xml.str, test/errors/759398.xml. - CVE-2016-1836 * SECURITY UPDATE: heap use-after-free in htmlParsePubidLiteral and htmlParseSystemiteral - debian/patches/CVE-2016-1837.patch: prevent stable pointer usage in HTMLparser.c. - CVE-2016-1837 * SECURITY UPDATE: heap-based buffer overread in xmlParserPrintFileContextInternal - debian/patches/CVE-2016-1838.patch: add bounds check to parser.c, add tests to result/errors/758588.xml.err, result/errors/758588.xml.str, test/errors/758588.xml. - CVE-2016-1838 * SECURITY UPDATE: heap-based buffer overread in xmlDictAddString - debian/patches/CVE-2016-1839.patch: add bounds check to HTMLparser.c. - CVE-2015-8806 - CVE-2016-1839 - CVE-2016-2073 * SECURITY UPDATE: heap-buffer-overflow in xmlFAParsePosCharGroup - debian/patches/CVE-2016-1840.patch: properly handle error in xmlregexp.c. - CVE-2016-1840 * SECURITY UPDATE: avoid building recursive entities - debian/patches/CVE-2016-3627.patch: properly handle recursion in parser.c, tree.c. - CVE-2016-3627 * SECURITY UPDATE: recursion depth counter issue - debian/patches/CVE-2016-3705.patch: properly could recursion depth in parser.c. - CVE-2016-3705 * SECURITY UPDATE: heap-based buffer-underreads due to xmlParseName - debian/patches/CVE-2016-4447.patch: improve error handling in parser.c. - CVE-2016-4447 * SECURITY UPDATE: inappropriate fetch of entities content - debian/patches/CVE-2016-4449.patch: fix another external entity fetch in parser.c. - CVE-2016-4449 * SECURITY UPDATE: out of bound access when serializing malformed strings - debian/patches/CVE-2016-4483.patch: improve string handling in xmlsave.c. - CVE-2016-4483 Checksums-Sha1: 99e5532b39835f273b74a33f0f138ea16da0fe9d 1789130 libxml2-dbg_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 56b64ea83928307c8af8778718cb657250f02b79 1056 libxml2-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb 72095cffe43181d70add1cc9bbada4ba08712ed3 1060 libxml2-dev-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb 736b24d083fd72005db6eaf24ccac2247f3f3e86 699572 libxml2-dev_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 5a16ed213ad7efe18d2811c6e65ab5116366c2e2 1052 libxml2-udeb-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb 85e4eb603d44c04a27b30e11c44e95817f02ef11 576142 libxml2-udeb_2.9.3+dfsg1-1ubuntu0.1_s390x.udeb 20e2c9e4257c90abe0441a268e865d404cb598b2 72174 libxml2-utils-dbg_2.9.3+dfsg1-1ubuntu0.1_s390x.deb f89cde72be8e83995539fa268dbbe800fa2f9c02 1088 libxml2-utils-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb 574d2ce7724aa6bae3d883962013963b930e77fd 34268 libxml2-utils_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 217d0dfa7ae03966a7006432573b3412c8ea8ec5 641062 libxml2_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 324d82620fe7035589a395cd46fe3a04485dc393 251824 python-libxml2-dbg_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 84bfeabb492285ec1d25d351596e39b4e4327c26 140288 python-libxml2_2.9.3+dfsg1-1ubuntu0.1_s390x.deb Checksums-Sha256: 5f5ed8b898e0d47d83038ec69e17b97bcaf143ab35d2eae47ce4133c34e3fb5c 1789130 libxml2-dbg_2.9.3+dfsg1-1ubuntu0.1_s390x.deb dda644ed62b57f1588337faa3c857de82046bac33d00061426578c6a207fdcdd 1056 libxml2-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb a8733c3c36567d9abe63799dc01e2d72e7d5026a4c6b30f3e4559c8c33007928 1060 libxml2-dev-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb 566ab5c5ee969a416c5d78dd5a6b8627b4abff82e0a23667b748ef2f74613835 699572 libxml2-dev_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 56b879ebc2c412e4d6af64940709f91b198fac707f8c608f87a69900464b2c98 1052 libxml2-udeb-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb 0c169c3661c2cf9bfedf4f288c411ee74e0dc81b94f4c467fbdfcb739451cae9 576142 libxml2-udeb_2.9.3+dfsg1-1ubuntu0.1_s390x.udeb 00389b6d569618fd6bc6b875cc9b26cab3ed938254d4c5760371cac8c9f06a3b 72174 libxml2-utils-dbg_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 9bf8ffa749e3342c33a92ee2de1a82cefcbc2d1cd07c53ad82412a71c236d3da 1088 libxml2-utils-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb c7f179e151d98f407e038925b784bbf90f4adbf2ac8278fb33cbdfebb8608b4a 34268 libxml2-utils_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 012b0405113d13b051335704c09b32928eaa7b271beb5630c66a6e0ed096c070 641062 libxml2_2.9.3+dfsg1-1ubuntu0.1_s390x.deb d9550370c9691d05fc93988f91ee55637047e2bd7e6e4260e0d1283b2b5aa23d 251824 python-libxml2-dbg_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 9794b322392edab2e337293dcbbad677db3555c49bceeb415cf04a3f58b492bd 140288 python-libxml2_2.9.3+dfsg1-1ubuntu0.1_s390x.deb Files: d5818e92c774f19b35acc9c85c50230e 1789130 debug extra libxml2-dbg_2.9.3+dfsg1-1ubuntu0.1_s390x.deb da1fcd3a714267374fe733c2e5ff56db 1056 libs extra libxml2-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb f792c7079c1fb5be2916fe61059bfcf1 1060 libdevel extra libxml2-dev-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb a117af58779b7ac7849ff78c35ada2a0 699572 libdevel optional libxml2-dev_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 78cf25a13cdd4e2757b6c6210e54d423 1052 debian-installer extra libxml2-udeb-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb 85c0ddfe01631a0e03c03515b5c7bd25 576142 debian-installer optional libxml2-udeb_2.9.3+dfsg1-1ubuntu0.1_s390x.udeb ba5831a416da08c0cb6a339ad951c03d 72174 debug extra libxml2-utils-dbg_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 5ee148d99c7d8ac870c38570cbdc6a31 1088 text extra libxml2-utils-dbgsym_2.9.3+dfsg1-1ubuntu0.1_s390x.ddeb 94a08897ecc78e33148410edcd07cf61 34268 text optional libxml2-utils_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 655ef966c3a37813f8ae0b164a5f27ad 641062 libs standard libxml2_2.9.3+dfsg1-1ubuntu0.1_s390x.deb 7e0fd6a636a051ed3f0b28254307e59c 251824 debug extra python-libxml2-dbg_2.9.3+dfsg1-1ubuntu0.1_s390x.deb db68626de007ae45878ada30028d6913 140288 python optional python-libxml2_2.9.3+dfsg1-1ubuntu0.1_s390x.deb Original-Maintainer: Debian XML/SGML Group Package-Type: udeb