Format: 1.8 Date: Tue, 14 Mar 2017 16:06:13 -0400 Source: libxml2 Binary: libxml2 libxml2-utils libxml2-utils-dbg libxml2-dev libxml2-dbg libxml2-doc python-libxml2 python-libxml2-dbg libxml2-udeb Architecture: amd64 all Version: 2.9.3+dfsg1-1ubuntu0.2 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libxml2 - GNOME XML library libxml2-dbg - Debugging symbols for the GNOME XML library libxml2-dev - Development files for the GNOME XML library libxml2-doc - Documentation for the GNOME XML library libxml2-udeb - GNOME XML library - minimal runtime (udeb) libxml2-utils - XML utilities libxml2-utils-dbg - XML utilities (debug extension) python-libxml2 - Python bindings for the GNOME XML library python-libxml2-dbg - Python bindings for the GNOME XML library (debug extension) Launchpad-Bugs-Fixed: 1652325 Changes: libxml2 (2.9.3+dfsg1-1ubuntu0.2) xenial-security; urgency=medium . * SECURITY UPDATE: format string vulnerabilities - debian/patches/CVE-2016-4448-1.patch: fix format string warnings in HTMLparser.c, SAX2.c, catalog.c, configure.ac, debugXML.c, encoding.c, entities.c, error.c, include/libxml/parserInternals.h, include/libxml/xmlerror.h, include/libxml/xmlstring.h, libxml.h, parser.c, parserInternals.c, relaxng.c, schematron.c, testModule.c, valid.c, xinclude.c, xmlIO.c, xmllint.c, xmlreader.c, xmlschemas.c, xmlstring.c, xmlwriter.c, xpath.c, xpointer.c. - debian/patches/CVE-2016-4448-2.patch: fix format string warnings in libxml.h, relaxng.c, xmlschemas.c, xmlstring.c. - debian/libxml2.symbols: added new symbol. - CVE-2016-4448 * SECURITY UPDATE: use-after-free via namespace nodes in XPointer ranges - debian/patches/CVE-2016-4658.patch: disallow namespace nodes in XPointer ranges in xpointer.c. - CVE-2016-4658 * SECURITY UPDATE: use-after-free in XPointer range-to function - debian/patches/CVE-2016-5131-1.patch: fix XPointer paths beginning with range-to in xpath.c, xpointer.c. - debian/patches/CVE-2016-5131-2.patch: fix comparison with root node in xmlXPathCmpNodes in xpath.c. - CVE-2016-5131 * debian/patches/lp1652325.patch: XML push parser fails with bogus UTF-8 encoding error when multi-byte character in large CDATA section is split across buffer (LP: #1652325) Checksums-Sha1: 410c515dd5a45c18132ab5147e91aee31d0671a4 1672096 libxml2-dbg_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 1d1cf0345a9d81933ca51774090eafc518cc1b49 1062 libxml2-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb cff0079df029f35ddf92a8b6de194a14a8e42435 1062 libxml2-dev-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb 47368de7c40d5931fe32119178ffdd6a82331f1d 744250 libxml2-dev_2.9.3+dfsg1-1ubuntu0.2_amd64.deb a7a3bc862cc94223baa8a10e05a1b95892c9f8c9 816240 libxml2-doc_2.9.3+dfsg1-1ubuntu0.2_all.deb 59ac49d2c82f7b637eb9c57ea222e78c23981fe6 1054 libxml2-udeb-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb b49511ee14817414fe2f747c56b0b1489f96636a 632288 libxml2-udeb_2.9.3+dfsg1-1ubuntu0.2_amd64.udeb 00cedff4fd24f3d05b78ce9567e330f1d465661e 72166 libxml2-utils-dbg_2.9.3+dfsg1-1ubuntu0.2_amd64.deb c792fd71283bf7a46ac5d1e0e06ffc267e92a950 1092 libxml2-utils-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb 8381030611e1ca24baa1af9619f5bc7bbbe95cc5 35002 libxml2-utils_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 359f770cba6a28f467bd05ea6b41c5252e167131 697444 libxml2_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 5d215f90d0b6467c8edd885b4b375d3ee6731081 259424 python-libxml2-dbg_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 6f55dce6e90a1032b95d316f70b24c8d10bfd2ca 140392 python-libxml2_2.9.3+dfsg1-1ubuntu0.2_amd64.deb Checksums-Sha256: 3da1d1c9c2db88a2b695e8b7a4696978ea9b437b8d176d3651cd406a509c84ef 1672096 libxml2-dbg_2.9.3+dfsg1-1ubuntu0.2_amd64.deb b9b0b65de61ec0ba7e2911bab49a5becd2f84b8c581cde6cf10e17097b8734d9 1062 libxml2-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb 07fc63fb7379d20270da338dfaf112b72bdbe62685c5bb7ab849edd2c29ebe7a 1062 libxml2-dev-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb 45ded16df8148307e9f379e8aaa9565ca3f0ef5d716b17a962b44ff19a786cda 744250 libxml2-dev_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 1ba2e9fd35a3008e117400cacefb5021e2dd407c29af8c52120d0b78fd8352c7 816240 libxml2-doc_2.9.3+dfsg1-1ubuntu0.2_all.deb 03b76929322a68546c2093106f31d6dfd27fa5baf078e30a90ed7cd2498b5025 1054 libxml2-udeb-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb efef9b13e83cf6a8825ead94e0aaf5d6e94ef19904d3c6b32a0e72617accbc46 632288 libxml2-udeb_2.9.3+dfsg1-1ubuntu0.2_amd64.udeb e7f8f98c6218886a5de0f114b644bc4d79da8f3bf03869735b171ae6553d5931 72166 libxml2-utils-dbg_2.9.3+dfsg1-1ubuntu0.2_amd64.deb b5dc51f0ad6c9b3b35d42109557bcc451179db41331558ca488dd9d62a071cd4 1092 libxml2-utils-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb 6c0e532b9226f06922c17c7a06e5e1d54e287d93478429061688c85205565d74 35002 libxml2-utils_2.9.3+dfsg1-1ubuntu0.2_amd64.deb ea0d5072fed56b9f8aea2cb86a7245f845ced9a15f56dfb363b037b8dd84898f 697444 libxml2_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 1dfc95dfdb1cad30cda150b1b3bdb3452d185070ae06e8d7b289c10ce3d6467f 259424 python-libxml2-dbg_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 48f4e34889351237561108ff1bb282aead6bd1f93764039442f647f398537717 140392 python-libxml2_2.9.3+dfsg1-1ubuntu0.2_amd64.deb Files: 11a7d86ccd34224e2e2e92a3f71bfae2 1672096 debug extra libxml2-dbg_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 9090a8062bba41569780beb1aa92a744 1062 libs extra libxml2-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb dfd7cf04abc79c7c8fe1f9be3f3c5133 1062 libdevel extra libxml2-dev-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb 8debb702d571b0e5216c69a45ea11835 744250 libdevel optional libxml2-dev_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 784df4f32239a6262037503daf248255 816240 doc optional libxml2-doc_2.9.3+dfsg1-1ubuntu0.2_all.deb e873f013e92e7e18752202785dc3e7ee 1054 debian-installer extra libxml2-udeb-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb 4106fcb1100d018ff45d4df4b35ffed2 632288 debian-installer optional libxml2-udeb_2.9.3+dfsg1-1ubuntu0.2_amd64.udeb 890ccce9548dfb61e4ac05fbe164ce4d 72166 debug extra libxml2-utils-dbg_2.9.3+dfsg1-1ubuntu0.2_amd64.deb a9542a54b82f04c5600e4c73605cced9 1092 text extra libxml2-utils-dbgsym_2.9.3+dfsg1-1ubuntu0.2_amd64.ddeb 9c98ca8fbb13d8679adfbcc17f39c8c7 35002 text optional libxml2-utils_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 92ab44dfaf77dc20fef1fd94bac81917 697444 libs standard libxml2_2.9.3+dfsg1-1ubuntu0.2_amd64.deb 9b04d6b0b0c2909b3a6f2e50ab4ebb23 259424 debug extra python-libxml2-dbg_2.9.3+dfsg1-1ubuntu0.2_amd64.deb e9aca03c056c224bd1836894e1d39b24 140392 python optional python-libxml2_2.9.3+dfsg1-1ubuntu0.2_amd64.deb Original-Maintainer: Debian XML/SGML Group Package-Type: udeb