Univention Bugzilla – Bug 54788
libxml2: Multiple issues (5.0)
Last modified: 2022-05-25 18:33:33 CEST
New Debian libxml2 2.9.4+dfsg1-7+deb10u4 fixes: This update addresses the following issue: * integer overflows in xmlBuf and xmlBuffer lead to out-of-bounds write (CVE-2022-29824)
--- mirror/ftp/pool/main/libx/libxml2/libxml2_2.9.4+dfsg1-7+deb10u3.dsc +++ apt/ucs_5.0-0-errata5.0-1/source/libxml2_2.9.4+dfsg1-7+deb10u4.dsc @@ -1,3 +1,10 @@ +2.9.4+dfsg1-7+deb10u4 [Sun, 15 May 2022 16:13:21 +0200] Salvatore Bonaccorso <carnil@debian.org>: + + * Non-maintainer upload by the Security Team. + * Fix integer overflow in xmlBufferResize + * Fix integer overflows in xmlBuf and xmlBuffer (CVE-2022-29824) + (Closes: #1010526) + 2.9.4+dfsg1-7+deb10u3 [Thu, 17 Mar 2022 22:04:26 +0100] Salvatore Bonaccorso <carnil@debian.org>: * Non-maintainer upload. <http://piuparts.knut.univention.de/5.0-1/#2630192578442359524>
OK: yaml OK: announce_errata OK: patch OK: piuparts [5.0-1] 6db2d462dc Bug #54788: libxml2 2.9.4+dfsg1-7+deb10u4 doc/errata/staging/libxml2.yaml | 13 +++++++++++++ 1 file changed, 13 insertions(+)
<https://errata.software-univention.de/#/?erratum=5.0x312>