guix-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [PATCH 0/3] Expat and libxslt changes for core-updates


From: Leo Famulari
Subject: Re: [PATCH 0/3] Expat and libxslt changes for core-updates
Date: Thu, 9 Jun 2016 12:43:17 -0400
User-agent: Mutt/1.6.0 (2016-04-01)

On Wed, Jun 08, 2016 at 01:10:16PM +0300, Efraim Flashner wrote:
> FWIW debian's expat-2.1.1(-3) still has the cve-2015-1283 applied.

I looked at the expat Git repo and the original fix for CVE-2015-1283
was part of 2.1.1. The improvement to the fix must be backported. I will
take the upstream commit that applies the improvement.



reply via email to

[Prev in Thread] Current Thread [Next in Thread]