-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 01 Jul 2016 14:28:51 +0200 Source: xerces-c Binary: libxerces-c3.1 libxerces-c-dev libxerces-c-doc libxerces-c-samples Architecture: source Version: 3.1.3+debian-2.1 Distribution: unstable Urgency: medium Maintainer: William Blough <devel@blough.us> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Closes: 828990 Description: libxerces-c-dev - validating XML parser library for C++ (development files) libxerces-c-doc - validating XML parser library for C++ (documentation) libxerces-c-samples - validating XML parser library for C++ (compiled samples) libxerces-c3.1 - validating XML parser library for C++ Changes: xerces-c (3.1.3+debian-2.1) unstable; urgency=medium . * Non-maintainer upload. * CVE-2016-4463: Apache Xerces-C XML Parser Crashes on Malformed DTD (Closes: #828990) * Enable the ability to disable DTD processing through the use of an env variable * Add NEWS.Debian entry to document the XERCES_DISABLE_DTD variable Checksums-Sha1: 4c3afdce8499332b87487c09d01191b58620c2b8 2239 xerces-c_3.1.3+debian-2.1.dsc f0119137c2f105795ad9cb136b4b85d0612693a0 22432 xerces-c_3.1.3+debian-2.1.debian.tar.xz Checksums-Sha256: c4b1c6cf2d0d29325819d0554b09e7650c159e08ca68e765180347cf7a5ecb7b 2239 xerces-c_3.1.3+debian-2.1.dsc f13c3ccba247f95fde57df4a59fbd2526a8e87493a0c91df0085e082d103e6d7 22432 xerces-c_3.1.3+debian-2.1.debian.tar.xz Files: 4f1545bb88c3b4507089eba43ccbaed7 2239 libs optional xerces-c_3.1.3+debian-2.1.dsc daef52ef1a14f85fa9072bb40858c174 22432 libs optional xerces-c_3.1.3+debian-2.1.debian.tar.xz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJXdmVqAAoJEAVMuPMTQ89EXJcP/RS+ZXNtgZccn0UY0y3RE0wV HosipTNSEdt28rctAiSMpTX09qbrvVGW0huGQOF0IuSbMAZRWSTElckDD0GAIrY7 0NeCUc8wVi3vZAvPyV8RxZ/bxjiX1LDMVg2yuI1IARD4dZwYWB51v5LzhJ8ttgak NUacBP1tCiAKR9/QA5XyrJoj4+gymHHs1DePUNN+P3rmr0UhnErhsO4/yGeoUzIb dObBMQA1Tlqrr/hGUZhE6f4xYo1tnR6F1cWqdbOmH7mraUfFIie5Qsph13B/U8Nx RuYddUdpqo49PZ5NZzRebv9D7089C70GvJPJBZ8nad45cq6/+BFilnEC8ptGwvwV iXElixRJ0dzNhoDmaKhnS+HWm8TRv70HwQ0IxddXFanp6CHw9J57Tt1FoWdZRxT9 n7I/0gGnQJneGQc0qM2dsk8eXdtPYVRIS7j0T9mmuEBycIvUY5Bp3YKhyxdHzbGg BifYxE/XFkXlycK6R16etS6aOw/XkukemAu1WRvpzz7XrBjOInXK/vJa39ilmF5w xnzne763ZtF2iAwtqP08diwMXp8aUfW5884LdWXRh0XeLFVBssSy6+ApYdKHj/BP B04727gsFXuWB2wxidAIGBvxpHHZP9rG1vzUo/dq9N8Fdb+jvPNL7+EYyidFSr3+ RPdVZjrb0v8BSkNEbSfU =3sZq -----END PGP SIGNATURE-----