[xml/sgml-pkgs] Bug#460292: Bug#460292: libxml2: CVE-2007-6284 denial of service via crafted UTF-8 sequence

Nico Golde nion at debian.org
Mon Jan 14 12:43:12 UTC 2008


Hi Mike,
* Mike Hommey <mh at glandium.org> [2008-01-14 12:22]:
> On Sun, Jan 13, 2008 at 03:22:46PM +0100, Nico Golde wrote:
> > Hi,
> > attached is a patch for an NMU.
> > It will be also archived on:
> > http://people.debian.org/~nion/nmu-diff/libxml2-2.6.30.dfsg-3_2.6.30.dfsg-3.1.patch
> > 
> > Please ping me in case you have no time to do an upload in 
> > reasonable time.
> 
> Please go ahead. If you have time to take a look at libxml1 too,
> which seems to be affected too, that would be appreciated.

Thanks for the hint. I cloned this bug and fixed this as 
well in libxml1. I send you the diff to the other bug.
Going to upload libxml2 now.
Kind regards
Nico
-- 
Nico Golde - http://www.ngolde.de - nion at jabber.ccc.de - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.alioth.debian.org/pipermail/debian-xml-sgml-pkgs/attachments/20080114/25bb644a/attachment.pgp 


More information about the debian-xml-sgml-pkgs mailing list