[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted xerces-c 3.1.1-1+deb6u2 (source all i386) into squeeze-lts



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 25 Feb 2016 18:35:28 +0100
Source: xerces-c
Binary: libxerces-c3.1 libxerces-c-dev libxerces-c-doc libxerces-c-samples
Architecture: source all i386
Version: 3.1.1-1+deb6u2
Distribution: squeeze-lts
Urgency: high
Maintainer: Jay Berkenbilt <qjb@debian.org>
Changed-By: Thorsten Alteholz <debian@alteholz.de>
Description: 
 libxerces-c-dev - validating XML parser library for C++ (development files)
 libxerces-c-doc - validating XML parser library for C++ (documentation)
 libxerces-c-samples - validating XML parser library for C++ (compiled samples)
 libxerces-c3.1 - validating XML parser library for C++
Changes: 
 xerces-c (3.1.1-1+deb6u2) squeeze-lts; urgency=high
 .
   * Non-maintainer upload by the Squeeze LTS Team.
   * Add CVE-2016-0729.patch patch.
     Apache Xerces-C XML Parser Crashes on Malformed Input
     The Xerces-C XML parser mishandles certain kinds of malformed
     input documents, resulting in buffer overlows during processing
     and error reporting. The overflows can manifest as a segmentation
     fault or as memory corruption during a parse operation. The bugs
     allow for a denial of service attack in many applications by an
     unauthenticated attacker, and could conceivably result in remote
     code execution.
Checksums-Sha1: 
 ce30dbe268ea76dfc5c06b74f175fa1010646db4 1852 xerces-c_3.1.1-1+deb6u2.dsc
 177ec838c5119df57ec77eddec9a29f7e754c8b2 5051308 xerces-c_3.1.1.orig.tar.gz
 f4151505d620441bf1ad5b8a6e832aa670ed04f0 9451 xerces-c_3.1.1-1+deb6u2.debian.tar.gz
 c3330d12439b656018a5bff3f31a6e0c3894dc77 2593876 libxerces-c-doc_3.1.1-1+deb6u2_all.deb
 33463fd24746837f4cd0b3cdfe0d5b8f915d021a 1180502 libxerces-c3.1_3.1.1-1+deb6u2_i386.deb
 cce5c8431faf946451f4b61ce029902f2e18e6dd 2706454 libxerces-c-dev_3.1.1-1+deb6u2_i386.deb
 cf12dd8e37433ecf6e0fc5ca5fb5e2fb1070d694 195290 libxerces-c-samples_3.1.1-1+deb6u2_i386.deb
Checksums-Sha256: 
 1eab8e67821d02a3e5a1ae0edf0e46e0dca32e566c159a53b14de0d95a2eaa1f 1852 xerces-c_3.1.1-1+deb6u2.dsc
 a42785f71e0b91d5fd273831c87410ce60a73ccfdd207de1b805d26d44968736 5051308 xerces-c_3.1.1.orig.tar.gz
 0dccc2cb7dfc005cecc11c3ab0846f7e73fe2dfe2104ff5394aa8af87a4e15e1 9451 xerces-c_3.1.1-1+deb6u2.debian.tar.gz
 97252d069aea0ab02096df215a5cbd7540190508c5fdfde2fa875b08ca011cd4 2593876 libxerces-c-doc_3.1.1-1+deb6u2_all.deb
 8183141bfcd0182a68f7d870a8a5a9b881648173c15a4292c0379dd4daad6a18 1180502 libxerces-c3.1_3.1.1-1+deb6u2_i386.deb
 2981652cbfd3d02d46d37b6c9792fe4a96e6039b5ba10b32de8eba6d8e1c25b9 2706454 libxerces-c-dev_3.1.1-1+deb6u2_i386.deb
 97b85b9c411c646e0e0ec5e8cd0a010604548efc92c2d6337df8184dcb7cd0c9 195290 libxerces-c-samples_3.1.1-1+deb6u2_i386.deb
Files: 
 7f92a9b9380b0d0834c9fa2ab16cd4c3 1852 libs optional xerces-c_3.1.1-1+deb6u2.dsc
 6a8ec45d83c8cfb1584c5a5345cb51ae 5051308 libs optional xerces-c_3.1.1.orig.tar.gz
 87b634a7119c5d8b19e98b8c9dffcf1b 9451 libs optional xerces-c_3.1.1-1+deb6u2.debian.tar.gz
 925286c8c37dab7d16fb55e6025cb449 2593876 doc optional libxerces-c-doc_3.1.1-1+deb6u2_all.deb
 d8be9d3b5041466abec6f42adde1e1f4 1180502 libs optional libxerces-c3.1_3.1.1-1+deb6u2_i386.deb
 ff5b24fbfe40ffb7ece7ea93fc41e8d4 2706454 libdevel optional libxerces-c-dev_3.1.1-1+deb6u2_i386.deb
 c85adbd719169158a72fa32af35311e5 195290 devel optional libxerces-c-samples_3.1.1-1+deb6u2_i386.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=vJm2
-----END PGP SIGNATURE-----


Reply to: