From mboxrd@z Thu Jan 1 00:00:00 1970 Return-path: Received: from mail.thorsis.com ([92.198.35.195]) by metis.ext.pengutronix.de with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1jEYjF-0001hP-Gb for ptxdist@pengutronix.de; Wed, 18 Mar 2020 14:27:27 +0100 Received: from localhost (localhost [127.0.0.1]) by mail.thorsis.com (Postfix) with ESMTP id B26DF4B03 for ; Wed, 18 Mar 2020 14:27:24 +0100 (CET) Received: from mail.thorsis.com ([127.0.0.1]) by localhost (mail.thorsis.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id VC8CT4qB7mlm for ; Wed, 18 Mar 2020 14:27:24 +0100 (CET) Received: from adahl by ada.ifak-system.com with local (Exim 4.89) (envelope-from ) id 1jEYj6-0002m8-Cb for ptxdist@pengutronix.de; Wed, 18 Mar 2020 14:27:16 +0100 From: Alexander Dahl Date: Wed, 18 Mar 2020 14:27:12 +0100 Message-Id: <20200318132716.10624-1-ada@thorsis.com> Subject: [ptxdist] [PATCH 0/4] libxml2: Upgrade and add some fixes List-Id: PTXdist Development Mailing List List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: ptxdist@pengutronix.de MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Errors-To: ptxdist-bounces@pengutronix.de Sender: "ptxdist" To: ptxdist@pengutronix.de Hei hei, this series starts with a follow up to my license update series from last year. As you might have already noticed in the dropbear series from last week, I took the remaining license related patches and put them to new package related series, where I touch it anyway. The second patch is the ordinary version bump, the other two patches add fixes for two post release CVEs one by one. Greets Alex Alexander Dahl (4): libxml2: Fix license and add license file hashes libxml2: version bump 2.9.9 -> 2.9.10 libxml2: Add upstream patch fixing CVE-2020-7595 libxml2: Add upstream patch fixing CVE-2019-20388 ...e-loop-in-xmlStringLenDecodeEntities.patch | 28 ++++++++++++++++++ ...mory-leak-in-xmlSchemaValidateStream.patch | 29 +++++++++++++++++++ ...200-xml2-config-is-not-SYSROOT-aware.patch | 2 +- patches/libxml2-2.9.10/series | 8 +++++ patches/libxml2-2.9.9/series | 5 ---- rules/libxml2.make | 10 +++++-- 6 files changed, 73 insertions(+), 9 deletions(-) create mode 100644 patches/libxml2-2.9.10/0001-Fix-infinite-loop-in-xmlStringLenDecodeEntities.patch create mode 100644 patches/libxml2-2.9.10/0002-Fix-memory-leak-in-xmlSchemaValidateStream.patch rename patches/{libxml2-2.9.9 => libxml2-2.9.10}/0200-xml2-config-is-not-SYSROOT-aware.patch (93%) create mode 100644 patches/libxml2-2.9.10/series delete mode 100644 patches/libxml2-2.9.9/series -- 2.20.1 _______________________________________________ ptxdist mailing list ptxdist@pengutronix.de