Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 17 Sep 2020 07:00:03 +0000
From:      bugzilla-noreply@freebsd.org
To:        ports-bugs@FreeBSD.org
Subject:   [Bug 249386] libxml2 - multiple vulnerabilities
Message-ID:  <bug-249386-7788@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D249386

            Bug ID: 249386
           Summary: libxml2 - multiple vulnerabilities
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
               URL: https://nvd.nist.gov/vuln/search/results?form_type=3DAdv
                    anced&results_type=3Doverview&search_type=3Dall&cpe_ven=
dor
                    =3Dcpe%3A%2F%3Axmlsoft&cpe_product=3Dcpe%3A%2F%3Axmlsof=
t%3
                    Alibxml2&pub_start_date=3D01%2F21%2F2020&pub_end_date=
=3D09
                    %2F17%2F2020
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: Individual Port(s)
          Assignee: ports-bugs@FreeBSD.org
          Reporter: daniel.engberg.lists@pyret.net

Created attachment 218018
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=3D218018&action=
=3Dedit
Patch for libxml2

Fixes CVE-2019-20388, CVE-2020-7595, CVE-2020-24977

As there's no public announcement as far as I can tell I'm not sure how I
should go about vuxml entry/entries.

Compile tested on FreeBSD 13.0-CURRENT #0 r364979 (AMD64)
Poudriere OK 12.1-RELEASE (AMD64)

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-249386-7788>