[xml/sgml-pkgs] Bug#679280: CVE-2012-2807

Moritz Muehlenhoff muehlenhoff at univention.de
Wed Jun 27 15:15:50 UTC 2012


Package: libxml2
Severity: grave
Tags: security

The Chrome developers found an integer overflow in the embedded copy of
libxml, which has been assigned CVE-2012-2807:

http://googlechromereleases.blogspot.de/2012/06/stable-channel-update_26.html:

[64-bit Linux only] [$3000] [129930] High CVE-2012-2807: Integer overflows in libxml. Credit to Jüri Aedla.

This is fixed by the following commit:
http://git.chromium.org/gitweb/?p=chromium/src.git;a=patch;h=f183580d61c054f7f6bb35cfe29e1b342390fbeb

Cheers,
        Moritz





More information about the debian-xml-sgml-pkgs mailing list