AOSC-Dev / aosc-os-abbs

ABBS/ACBS tree for AOSC OS package metadata, build configuration, scripts, and patches
https://packages.aosc.io
GNU General Public License v2.0
102 stars 80 forks source link

libxml2: CVE-2018-9251, CVE-2018-14404, CVE-2018-14567 #1330

Closed l2dy closed 6 years ago

l2dy commented 6 years ago

https://gitlab.gnome.org/GNOME/libxml2/commit/a436374994c47b12d5de1b8b1d191a098fa23594 https://gitlab.gnome.org/GNOME/libxml2/commit/2240fbf5912054af025fb6e01e26375100275e74

MingcongBai commented 6 years ago

Second link also addresses CVE-2018-9251. Updating title.

MingcongBai commented 6 years ago

Fixed with https://github.com/AOSC-Dev/aosc-os-abbs/commit/8a1bc72c73522842be6af99d71b565bc3cde964b (main) and https://github.com/AOSC-Dev/aosc-os-abbs/commit/1f6b70a1cde1dd4d6e2444aa0fbcc78ed3077834 (optenv32). Closing, both fixes should share one AOSA.

l2dy commented 6 years ago

Use AOSA-2018-0365.