Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 24 May 2021 14:42:55 +0000
From:      bugzilla-noreply@freebsd.org
To:        desktop@FreeBSD.org
Subject:   [Bug 256121] [exp-run] texproc/expat2: update to 2.4.1 (fixes CVE-2013-0340/CWE-776)
Message-ID:  <bug-256121-39348@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D256121

            Bug ID: 256121
           Summary: [exp-run] texproc/expat2: update to 2.4.1 (fixes
                    CVE-2013-0340/CWE-776)
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: Individual Port(s)
          Assignee: portmgr@FreeBSD.org
          Reporter: tcberner@freebsd.org
                CC: desktop@FreeBSD.org
             Flags: exp-run?

Created attachment 225223
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=3D225223&action=
=3Dedit
v1

Moin moin=20

desktop@ would like to ask for an exp-run to update textproc/expat2 to 2.4.1
which includes a fix against the billion laughs attach CVE-2013-0340/CWE-77=
6.

The patch is attached and can also be found here:
https://people.freebsd.org/~tcberner/patches/0001-textprox-expat2-update-to=
-2.4.1-fixes-CVE-2013-0340-.patch

mfg Tobias

--=20
You are receiving this mail because:
You are on the CC list for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-256121-39348>