-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 26 Jul 2025 17:38:14 +0200 Source: libxml2 Architecture: source Version: 2.9.10+dfsg-6.7+deb11u8 Distribution: bullseye-security Urgency: high Maintainer: Debian XML/SGML Group <debian-xml-sgml-pkgs@lists.alioth.debian.org> Changed-By: Guilhem Moulin <guilhem@debian.org> Closes: 1071162 1107720 1107755 1107938 Changes: libxml2 (2.9.10+dfsg-6.7+deb11u8) bullseye-security; urgency=high . * Non-maintainer upload by the LTS Team. * Fix CVE-2024-34459: Heap buffer overflow with `xmllint --htmlout` (Closes: #1071162). * Fix CVE-2025-6021: Integer overflow issue in xmlBuildQName. (Closes: #1107720). * Fix CVE-2025-6170: Potential buffer overflows in the interactive shell (Closes: #1107938). * Fix CVE-2025-49794: Use-after-free issue in xmlSchematronReportOutput (Closes: #1107755). * Fix CVE-2025-49796: Type confusion issue in xmlSchematronReportOutput (Closes: #1107755). Checksums-Sha1: 8db4d3eefc4af5cd801de5895b4de84df3a5d9ba 2704 libxml2_2.9.10+dfsg-6.7+deb11u8.dsc 0769e6bc54361e8b66332a3abcf891d9c62b083d 50604 libxml2_2.9.10+dfsg-6.7+deb11u8.debian.tar.xz 95bfb2ea868427e4f9a9bb72c5a44fef1f92fc19 9847 libxml2_2.9.10+dfsg-6.7+deb11u8_amd64.buildinfo Checksums-Sha256: 6a13cdf4b7546ed994a14568f35974c382ff8b5d31996c3cb50d89a7bc040e91 2704 libxml2_2.9.10+dfsg-6.7+deb11u8.dsc 31dad41bd24da0c308ca7d60d1b354d696da8450e70e4f3b4270c9a114ac512d 50604 libxml2_2.9.10+dfsg-6.7+deb11u8.debian.tar.xz 25ecff1ade693f192999943ba4022b3a243cde024c949bd7f0a5544ca4a8982d 9847 libxml2_2.9.10+dfsg-6.7+deb11u8_amd64.buildinfo Files: ad96b4ebf66d103e90f90e4bbf6041c0 2704 libs optional libxml2_2.9.10+dfsg-6.7+deb11u8.dsc debf8dc606229c4c5007c8be6f650712 50604 libs optional libxml2_2.9.10+dfsg-6.7+deb11u8.debian.tar.xz 68ac4aab14111b680f8ef7825a82f59a 9847 libs optional libxml2_2.9.10+dfsg-6.7+deb11u8_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEERpy6p3b9sfzUdbME05pJnDwhpVIFAmiFGA8ACgkQ05pJnDwh pVLm2g/9HqMdAzBXCGXQQXQ1vQmgnLQt5G691HKUJrGzBOWJ556+VIVzX+O5Aldl VTFv7KAVKBANdElZMFXr5QAN5sPRcXejUPHqBxwRshqcWPfWQ+FZY+iaQIyZzUF3 3StRAewu8eqbmPHqvbrB7aKDNaSLA7MTA4NZi4SRYXR8/c3NXIp03Gt2QG6S6O8R 0yEiaWhKHU4/nfHiSzMc6X9VOwhF4zlNicLFqMlwGzz+bVmUDA2IkVKXFXfJOYao XCYGAx/F/gwMiU1WPs1xg7TYyldii4ZxZy2iKQGVbY/Bs6XwrEWsR0UQAgLq1sZF vQZhRghgb/pBHHqs+nNFVRwT6oDtb/h1m0CGqpZbkgKBV2RVz55/jOcNncchL4AX JCayXRkU6fUQl8ieesQbyC/k6rp6BbRWSAaXpaQ+HX0vxngEFMt1kxKWPcQgr4tO WBvvtzs/o5hCc3VAYSclS1gaUzPOsC4i3E+78gA1CyAqC9RbOvk7gbscuJ/KT9oQ s90pMy0RiC7LUqEFUWDKGqa1XCwGe12Y9LGxMSBJqzcRCTOLiyi+Hu/ySO0JNL4G UeARUy/FyeBcglunoNdJ8G3JEXcCT00fD+vAcWhqEyHsoxrE+BrfW9ZrFirXKFTj mbuHLy+T2KipZWYEyH80W6WFfYkzgv2cgEInw7KZXt58OrboAdQ= =XLvY -----END PGP SIGNATURE-----
Attachment:
pgpzyOGrLL1Bx.pgp
Description: PGP signature