HomeFreeBSD

textproc/libxml2: update to 2.10.3 security release (+)

Description

textproc/libxml2: update to 2.10.3 security release (+)

  • [CVE-2022-40304] Fix dict corruption caused by entity reference cycles
  • [CVE-2022-40303] Fix integer overflows with XML_PARSE_HUGE
  • Fix overflow check in SAX2.c

Changelog: https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.10.3
MFH: 2022Q4
(cherry picked from commit def7c5c7f488af35bcca2a2cd1dcf8ff54b41223)

Details

Provenance
fluffyAuthored on Oct 17 2022, 6:03 AM
Parents
R11:79ea84e65d41: devel/py-pytz: Update to 2022.4
Branches
Unknown
Tags
Unknown