-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 29 Jun 2019 15:28:34 +0200 Source: expat Binary: lib64expat1-dev lib64expat1 libexpat1-dev libexpat1 libexpat1-udeb expat Architecture: source amd64 Version: 2.1.0-6+deb8u5 Distribution: jessie-security Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Markus Koschany <apo@debian.org> Description: expat - XML parsing C library - example application lib64expat1 - XML parsing C library - runtime library (64bit) lib64expat1-dev - XML parsing C library - development kit (64bit) libexpat1 - XML parsing C library - runtime library libexpat1-dev - XML parsing C library - development kit libexpat1-udeb - XML parsing C library - runtime library (udeb) Changes: expat (2.1.0-6+deb8u5) jessie-security; urgency=high . * Non-maintainer upload by the LTS team. * Fix CVE-2018-20843: It was discovered that Expat, an XML parsing C library, did not properly handled XML input including XML names that contain a large number of colons, potentially resulting in denial of service. Checksums-Sha1: b61f01a4d40b89eb6a610732ce5952f172300256 2443 expat_2.1.0-6+deb8u5.dsc ab46f03fa47ab459ba8d06bd28d967a903c01f07 22932 expat_2.1.0-6+deb8u5.debian.tar.xz e9db595e74bd382f994f585f29589d6102c5a9e1 126386 libexpat1-dev_2.1.0-6+deb8u5_amd64.deb 1439ac87aa415d18e0a4ddbabce61b4e06980058 80306 libexpat1_2.1.0-6+deb8u5_amd64.deb 7f8e47cac34a5b4217b108202568bf2e5cba67e1 52186 libexpat1-udeb_2.1.0-6+deb8u5_amd64.udeb e9fbea5a59357e9818c81d16ff556c125782e769 24342 expat_2.1.0-6+deb8u5_amd64.deb Checksums-Sha256: a3dd7aa5ee6c407abc6e61fb77cfcbf168904086db8f18682f0c31f2bd410a53 2443 expat_2.1.0-6+deb8u5.dsc 2daf883dd385cf4ae686f8c2a7057e8cdc6a7368893de7f39b5c5577d4a50049 22932 expat_2.1.0-6+deb8u5.debian.tar.xz d17c83371511ce2042eaaff3d05c6aaf5d952bf508dee9274f1c772778cb2e51 126386 libexpat1-dev_2.1.0-6+deb8u5_amd64.deb 25baa2a993d2514f4d4a31ee6a68f4e62f2028c3fbaa9cd0d445e163290ca8c3 80306 libexpat1_2.1.0-6+deb8u5_amd64.deb b3a7a7068e65c1c4a10a8ce210c75d9677a66649585345370ff0fc52371ef4a5 52186 libexpat1-udeb_2.1.0-6+deb8u5_amd64.udeb 7e237391b6595b09dd75b34b629ba3971dd21ea68873b5362d8884ffded832c5 24342 expat_2.1.0-6+deb8u5_amd64.deb Files: 9de5050508a827a823cc26c48f249eb4 2443 text optional expat_2.1.0-6+deb8u5.dsc 26dbefb7f570225617c9565e613b7bf8 22932 text optional expat_2.1.0-6+deb8u5.debian.tar.xz 685d147fc8cff20982c41953022eadb5 126386 libdevel optional libexpat1-dev_2.1.0-6+deb8u5_amd64.deb 60ef88e38960756916d5f01b68daa826 80306 libs optional libexpat1_2.1.0-6+deb8u5_amd64.deb 41f7084a8e1431a76615411a08200c15 52186 debian-installer extra libexpat1-udeb_2.1.0-6+deb8u5_amd64.udeb dae142046444ce424f1d3f8a9353edf9 24342 text optional expat_2.1.0-6+deb8u5_amd64.deb Package-Type: udeb -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAl0XfH5fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1HkrjIP+gJA1C910AogUBPlJk66cSClrTpwn+mjAJIA xG6nwKe2zQSYSMg6C8K20HFz7Gm2TvY6xIkB3lhkc/PbdPyNZmXyMC8fhukNwObI 1eJMBLtTYVhQ7yhV7U1rqF6aSAk35eruARTMgVzFQlT0mL7cmVUJeLSb/0JkXNS1 CgpYhuQOy3Miayd6UL2NInQyWMaWHCBpCb7m6pBgxXIi5EdpYM1T24Oj7UWX5kHo Ru0KRZRuwVVpSH5E+lrDXZp1/uPXjYhIjuWCl1AJFx6fJsIu/2IT5m1pwWErfWpT 3DL6cNGLplGOQ/XmPBPTum8kyP8nxQHyE672ZyezOJZ8sW4cIOTS7M6+2awZl18o G335+bZrEhNRC5D1+a8kfkbY6wqcJEMp04XlZtUESRxpTWzHMPaMCkn/IdzSwjds 36ZHmEsEb7WGmweAO9YcPlT27RAcUMLz1XwcC3J1kV9kYNuIHSJk1phsHk8WxGxH XZkfUV32MvrCek9ek43xQbaf74U3nIBNdxDSHXYBduds/8Ga6x1TeapLbnSK3Zml +I6H1tsTI/JCoM7FbZ1Mo6bR1E+wMTCsALZWZkibIFNsingOr7D0JTDDVK3bdwJR q7bHhOKIOxZVUcZy/x0w7ogUXHJuPVbUzSrnSDKy0tfgzTTEdZmAPP3YsIEz5O1f dhd8Mit+ =ZjLq -----END PGP SIGNATURE-----