Univention Bugzilla – Bug 54609
libxml2: Multiple issues (5.0)
Last modified: 2022-03-30 12:41:43 CEST
New Debian libxml2 2.9.4+dfsg1-7+deb10u3 fixes: This update addresses the following issue: * Use-after-free of ID and IDREF attributes (CVE-2022-23308)
--- mirror/ftp/pool/main/libx/libxml2/libxml2_2.9.4+dfsg1-7+deb10u2.dsc +++ apt/ucs_5.0-0-errata5.0-1/source/libxml2_2.9.4+dfsg1-7+deb10u3.dsc @@ -1,3 +1,9 @@ +2.9.4+dfsg1-7+deb10u3 [Thu, 17 Mar 2022 22:04:26 +0100] Salvatore Bonaccorso <carnil@debian.org>: + + * Non-maintainer upload. + * Use-after-free of ID and IDREF attributes (CVE-2022-23308) + (Closes: #1006489) + 2.9.4+dfsg1-7+deb10u2 [Fri, 11 Jun 2021 18:57:11 +0200] Salvatore Bonaccorso <carnil@debian.org>: * Non-maintainer upload. <http://piuparts.knut.univention.de/5.0-1/#2630192578439111949>
OK: yaml OK: announce_errata OK: patch OK: piuparts [5.0-1] 32bd48e9d7 Bug #54609: libxml2 2.9.4+dfsg1-7+deb10u3 doc/errata/staging/libxml2.yaml | 12 ++++++++++++ 1 file changed, 12 insertions(+)
<https://errata.software-univention.de/#/?erratum=5.0x270>