-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 28 Jun 2016 17:04:13 +0200 Source: xerces-c Binary: libxerces-c3.1 libxerces-c-dev libxerces-c-doc libxerces-c-samples Architecture: source all amd64 Version: 3.1.1-3+deb7u4 Distribution: wheezy-security Urgency: high Maintainer: Jay Berkenbilt <qjb@debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: libxerces-c-dev - validating XML parser library for C++ (development files) libxerces-c-doc - validating XML parser library for C++ (documentation) libxerces-c-samples - validating XML parser library for C++ (compiled samples) libxerces-c3.1 - validating XML parser library for C++ Closes: 828990 Changes: xerces-c (3.1.1-3+deb7u4) wheezy-security; urgency=high . * Non-maintainer upload. * CVE-2016-4463: Apache Xerces-C XML Parser Crashes on Malformed DTD (Closes: #828990) * Enable the ability to disable DTD processing through the use of an env variable * Add NEWS.Debian entry to document the XERCES_DISABLE_DTD variable Checksums-Sha1: 924a4392ddaa622ad4ff54421dbc4cd7a1cfe717 1925 xerces-c_3.1.1-3+deb7u4.dsc abe9e62d11d2234f6a843df1bb934f85c023f6b0 9792 xerces-c_3.1.1-3+deb7u4.debian.tar.gz 9719d14688ecd4b9c4d902c7417ab1b7200dcb4a 2594184 libxerces-c-doc_3.1.1-3+deb7u4_all.deb 0318165195790a1b00d2fa1cc6c1d39c90f8af26 1140746 libxerces-c3.1_3.1.1-3+deb7u4_amd64.deb 8c1b134ea1d0cfd527ddb8a061e1f03d951cabcf 2962448 libxerces-c-dev_3.1.1-3+deb7u4_amd64.deb 15379666cc76c1e7374ac5326ba96e54e844b427 241502 libxerces-c-samples_3.1.1-3+deb7u4_amd64.deb Checksums-Sha256: 7e2e4aed191d721f6f3e248294c2985457ce2137ef3a22cef47d098c0dd83e59 1925 xerces-c_3.1.1-3+deb7u4.dsc 6aaa3f61a35af142d03c38a0b0f87d0fcea21af2b978449a0da18d6702357f63 9792 xerces-c_3.1.1-3+deb7u4.debian.tar.gz dfdcc8c9f1602c6315d16d3cd8eb03f5dfb302bb77f8f361f27dc317750442f2 2594184 libxerces-c-doc_3.1.1-3+deb7u4_all.deb 2722e8e128d47c03a50cea6c42690e039dfbee52504ab29255739c1ad8dc115f 1140746 libxerces-c3.1_3.1.1-3+deb7u4_amd64.deb 1dec7dd81f7df5a672961cca954868bf218f8997428a934c25aba5761f55a46b 2962448 libxerces-c-dev_3.1.1-3+deb7u4_amd64.deb af3723dfc6fa668bcfccd69ce092fc1aea49b6b3defaf4e1828a09ce0ae027e0 241502 libxerces-c-samples_3.1.1-3+deb7u4_amd64.deb Files: 7330e3292a777f6361ab441dcf8acb29 1925 libs optional xerces-c_3.1.1-3+deb7u4.dsc 626b94693ed3ee1267ac580e391ea1d3 9792 libs optional xerces-c_3.1.1-3+deb7u4.debian.tar.gz 7473afdbc5e293e6d88cd6742f587a2c 2594184 doc optional libxerces-c-doc_3.1.1-3+deb7u4_all.deb 4d231df59a138f509cb085a73e51aa0b 1140746 libs optional libxerces-c3.1_3.1.1-3+deb7u4_amd64.deb a2b974be1488e7dd271d7ae13477203d 2962448 libdevel optional libxerces-c-dev_3.1.1-3+deb7u4_amd64.deb ebdf203a79acaece266a593bebbe8b72 241502 devel optional libxerces-c-samples_3.1.1-3+deb7u4_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJXc+I/AAoJEAVMuPMTQ89E8tEQAJ+4eFrHkQBTWUJIrNw8RFNg 3IApdCXZGWCtbps6OuJfKzoD3/+idjCgjWmgTFf4IP7LQ6sztt44xJOxTibgW8DB mlIGfOgaMxyVbLYv91kNLoZy3/OEZDJgktRpOhbayW9Ks90I6JCEeVeARuPHlX9E G0O121YmKa3atarAwJNjZVImGwCOLtCMIHMISdBeT6LXq0U8ZkJOwnc8W4F4E3to 4rIar51/eqaxt/Is4XImCsD1yMpCY2hU0/5gS7ioFr3LUlbwb7KQ2zOF8yGm7Oap J3yoUDBBvrmPgMLvIp58MHMl4wGq83KNHsrCKsqEJx2XEl83GExNF3wevYUIAY6h kdtsSQ88uDgxfJFl2//5b23dJGnZnYICKKp5FBHjcqd6ZgRA/oQz3yv01QChel9c Qq/BAE3EFwRQBS2yZfbem1rX6qcSUS4LySfb2WdKZZHDH7eIdKX54a6HqDpGIdXO 7TOWDH2I7XqYsp9HHwW6nBEW4WX045X6XtNsnfoX1cvb43AJSIM1ybniv/B3eHbQ ghitgM6CRL8stMBYVxzo8scqt4+W/8uNWNHk8bcDTzlTwcLz+2AlnqGCUG61uvnP 1cCixNG31ihXjWsP3nAFyS8NeB7FXgfiuP6dGaneM9Rws/ZUoNBYKdsvFcKgS/hg 9O4n+vji4COZEf0lfyZ/ =cYOd -----END PGP SIGNATURE-----