-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 02 May 2021 16:23:29 +0200 Source: libxml2 Architecture: source Version: 2.9.10+dfsg-6.4 Distribution: experimental Urgency: medium Maintainer: Debian XML/SGML Group <debian-xml-sgml-pkgs@lists.alioth.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Closes: 987737 987738 987739 Changes: libxml2 (2.9.10+dfsg-6.4) experimental; urgency=medium . * Non-maintainer upload. * Fix use-after-free with `xmllint --html --push` (CVE-2021-3516) (Closes: #987739) * Validate UTF8 in xmlEncodeEntities (CVE-2021-3517) (Closes: #987738) * Fix user-after-free with `xmllint --xinclude --dropdtd` (CVE-2021-3518) (Closes: #987737) Checksums-Sha1: 4fa49bb8f9de7288c058d2d7d4f30273335c4845 2827 libxml2_2.9.10+dfsg-6.4.dsc a2b4fcdb2c032684c246fa9d46a2cda61398e5ee 31212 libxml2_2.9.10+dfsg-6.4.debian.tar.xz Checksums-Sha256: a991621b8aec184142f2626e0b4655c2ad669019f1b08eee47f27ce3a34e56fc 2827 libxml2_2.9.10+dfsg-6.4.dsc 70c0218dffda0f9ac26e047f98a4b01b5bbae4776d7727cb6dedbc6d9885eb4b 31212 libxml2_2.9.10+dfsg-6.4.debian.tar.xz Files: 103d15873690a686330255bbc20ff7ed 2827 libs optional libxml2_2.9.10+dfsg-6.4.dsc 628af30a853e74892a04ce246b4d42e1 31212 libs optional libxml2_2.9.10+dfsg-6.4.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmCOva1fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89E8+AP/1dOMIBsB52zxVCJFrSiK7kmTzPgbrJ/ ijZeKorh28rsKdjxe83h5Khe8Cwln2jeRYAN/Excyzpcfe2bNEZ2FEq1K/DqVC56 Au9pKsjEeaT/BjO+QQyaD9JwljwC3RaSnssEEO2UWslYZfmi59eCJKSfZ7kYdbf3 1k1RWbzt0xmIvQxMIwmn6cguo8OTTeWtvgZZBXi7/p5ioMG144lnvLu0JOHXZYc0 V+Pe7RC+q712P6s0w7hyrKqt2rynYVT/Wm1VuN7heMki5BruLtsVQm8HLezWCcAW AgTvIvztHCCuFSdCXfTy1lOXbAaYhRzMesubn3Qi1cF3omNmGZGLF+Ns0dkHR9sM XPEqRaYrINfaJfleC4tmO5ZQM+Kwha1Lu60aPuOMvxweRDcy3l8q9JYylEgwwpAU iIRphecs+5L/lWpXPVaCA3ItPc9lAVIFh6usRTXlUYDyNKPhDDIFgf8wgTMwZ/cM rcKzcbXzDtuuOaDvaYxs/ylu9diRiu/pH7vDo/jgz8MQml4R0Q6+XXryJ5AnoEUH aWzZANKJAAIfb1eygqoKn1JF6hGGZN3lTnBmRjNPXwwJT+wxEmeNqVxcoHBqOZbZ mpx7a8J+jAjsdyUn4TnmQtEkjdwEFU0S6CPPQDkm5GwfJ9hdzNOhBPW+KLns5zsT A08hXF9YaYSz =vW/w -----END PGP SIGNATURE-----