UbuntuUpdates.org

Package "libxml2-dev"

Name: libxml2-dev

Description:

GNOME XML library - development files

Latest version: 2.9.14+dfsg-1.3ubuntu0.1
Release: mantic (23.10)
Level: updates
Repository: main
Head package: libxml2
Homepage: http://xmlsoft.org

Links


Download "libxml2-dev"


Other versions of "libxml2-dev" in Mantic

Repository Area Version
base main 2.9.14+dfsg-1.3
security main 2.9.14+dfsg-1.3ubuntu0.1

Changelog

Version: 2.9.14+dfsg-1.3ubuntu0.1 2024-02-26 17:07:22 UTC

  libxml2 (2.9.14+dfsg-1.3ubuntu0.1) mantic-security; urgency=medium

  * SECURITY UPDATE: use-after-free via XInclude expansion
    - debian/patches/CVE-2024-25062.patch: don't expand XIncludes when
      backtracking in xmlreader.c.
    - CVE-2024-25062

 -- Marc Deslauriers <email address hidden> Fri, 16 Feb 2024 13:12:19 -0500

CVE-2024-25062 An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.12.5. When using the XML Reader interface with DTD validation and XInclude expan



About   -   Send Feedback to @ubuntu_updates