diff options
author | Josef Schlehofer <pepe.schlehofer@gmail.com> | 2020-01-06 18:50:39 +0100 |
---|---|---|
committer | Hauke Mehrtens <hauke@hauke-m.de> | 2020-01-26 22:12:50 +0100 |
commit | 0591348b3d7a699f6fc95a6b59d83476abcd8797 (patch) | |
tree | aefa67c3dd21c96015df00e8dae330067e1b1734 /package | |
parent | f51d1c3b7c7604489884dd9df2776e94dab7d413 (diff) | |
download | upstream-0591348b3d7a699f6fc95a6b59d83476abcd8797.tar.gz upstream-0591348b3d7a699f6fc95a6b59d83476abcd8797.tar.bz2 upstream-0591348b3d7a699f6fc95a6b59d83476abcd8797.zip |
tools/expat: Update to version 2.2.9
Fixes two CVEs:
- CVE-2019-15903 (Fix heap overflow triggered by XML_GetCurrentLineNumber)
- CVE-2018-20843 (Fix extraction of namespace prefixes from XML names)
Signed-off-by: Josef Schlehofer <pepe.schlehofer@gmail.com>
(cherry picked from commit b4af2c689fc8736777940b7bbf009bb1672296ec)
Diffstat (limited to 'package')
0 files changed, 0 insertions, 0 deletions