-
Committer:
Bazaar Package Importer
-
Author(s):
Kees Cook
-
Date:
2008-11-18 09:01:05 UTC
-
Revision ID:
james.westby@ubuntu.com-20081118090105-baxjnacblo9l7w0p
Tags: 2.6.31.dfsg-2ubuntu1.3
* SECURITY UPDATE: infinite loop, integer overflow, and double-free.
- parserInternals.c: upstream fix for double-free (svn rev 3741).
- tree.c: fix for infinite loop, thanks to Mike Hommey (CVE-2008-4225).
- SAX2.c: fix for integer overflow, thanks to Mike Hommey CVE-2008-4226).