-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 30 Dec 2023 15:10:00 +0100 Source: tinyxml Architecture: source Version: 2.6.2-4+deb10u2 Distribution: buster-security Urgency: high Maintainer: Felix Geyer <fgeyer@debian.org> Changed-By: Guilhem Moulin <guilhem@debian.org> Closes: 1059315 Changes: tinyxml (2.6.2-4+deb10u2) buster-security; urgency=high . * Non-maintainer upload by the LTS Security Team. * Fix CVE-2023-34194 / CVE-2023-40462: Reachable assertion (and application exit) via a crafted XML document with a '\0' located after whitespace. (Closes: #1059315) Checksums-Sha1: 70711d859f391c173efea91315adda3440ba6a7b 2101 tinyxml_2.6.2-4+deb10u2.dsc bbf93d0a2473191e4984f78d426c816834e1d6c4 5324 tinyxml_2.6.2-4+deb10u2.debian.tar.xz 32965840868d589c5df283af9e95f3453779d5e4 6527 tinyxml_2.6.2-4+deb10u2_amd64.buildinfo Checksums-Sha256: 452302d134f215b051b3a9c2eb45b0e717ff40a124f2b0136c547c6f5fbbf2f2 2101 tinyxml_2.6.2-4+deb10u2.dsc bc929803b61bf57ff86df5c9e7743c26e03ee54bbd9ee897e57f246227d5c275 5324 tinyxml_2.6.2-4+deb10u2.debian.tar.xz 0bf2897db407e882cc22ee180d906b5ce0000abbd567919e64d17575c840a1f5 6527 tinyxml_2.6.2-4+deb10u2_amd64.buildinfo Files: d5fa01909851f7397877e34c2c0650ac 2101 libs optional tinyxml_2.6.2-4+deb10u2.dsc 5521a6accfd8efcb8d6c57ff6b42df97 5324 libs optional tinyxml_2.6.2-4+deb10u2.debian.tar.xz f7f6d518493760f3ea632d8949764706 6527 libs optional tinyxml_2.6.2-4+deb10u2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEERpy6p3b9sfzUdbME05pJnDwhpVIFAmWQJScACgkQ05pJnDwh pVL/rg/+LdilJRa2SiTznx8IGf+qLcDmGkCEYKjQ8W9LL1vKzJpMq4ZBOcW8ghZC 9oCa/4FXrYrLRxXmQpEXrhIqVR8ahw+6LwgyM4AjtOHuTRcLJiXuuoVcQB0ywHdE H03bZMKys4a0p6+qZOkEiW1FGZRJqYKb2pzaCP/LdWmF6oucOI3faJ+E64ncvluH KfmkInwGgRK1wZkgItIeVzqEyYRTU+IC52WQohN9scSSl6EjZH7VCQ/c2WPWOG+U IJR9kKlFIQ/SNWFT7IJN0xtFsdvQY4jugfakb/q2VKzX/dBPa4UrlguC+5KEtVIh D2qzTryTmn8/32bUqIhrSClxO9sRRnZmX9AVmz46MEAZ6gFOqAJ8cly7/BalDT3k CX/yG+vJLCO6wFyt9MdbXm88DpqFitZx2ZNqtkgzur7Fdl6ctEVfaB1jtrkxxSzR OSib14e0rzR+mOqgBO5ssG8WhHou6HLC260wzOmAU1p7jOdKmRaGmOoPwXUqWniI g4vR8Ffs34fkUc2pmzdkVRtN1tMj3096NAXbqjTLRK7rIYMSwh2bRWou+BR/Q1h5 P1uH6q7ORiFl/7xEveE3lXeRH9vvkDJkByUs43UslBJWP3UvCbSH3YE1SZFZcRw7 hilX10AIiagWB8TpkDW6qlHMgAfkkbZue/fvv0/TJITQbhN23HE= =Kggt -----END PGP SIGNATURE-----