From mboxrd@z Thu Jan 1 00:00:00 1970 Delivery-date: Thu, 08 Feb 2024 21:20:33 +0100 Received: from metis.whiteo.stw.pengutronix.de ([2a0a:edc0:2:b01:1d::104]) by lore.white.stw.pengutronix.de with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from ) id 1rYAsq-0099m9-1m for lore@lore.pengutronix.de; Thu, 08 Feb 2024 21:20:33 +0100 Received: from localhost ([127.0.0.1] helo=metis.whiteo.stw.pengutronix.de) by metis.whiteo.stw.pengutronix.de with esmtp (Exim 4.92) (envelope-from ) id 1rYAsr-0002OM-IR; Thu, 08 Feb 2024 21:20:33 +0100 Received: from mail-db8eur05on2092.outbound.protection.outlook.com ([40.107.20.92] helo=EUR05-DB8-obe.outbound.protection.outlook.com) by metis.whiteo.stw.pengutronix.de with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1rYAsh-0002O1-K9 for ptxdist@pengutronix.de; Thu, 08 Feb 2024 21:20:24 +0100 ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=h60EbOVLV0FCh46uyNqC7XvIlxItz1wFU+ckidm514TmdlVjfKkg/cuTLmNQIrymVTNwNM3B9CUsSXciCQYvf6OAiN7lFyjxYfp61zh42hAaj0nZNFsIa/s4oVvXjrV4U+oEUoKbxHpFOonH/8sN01eCuXZmufygRFuXcjzmy0kxW2mxzrugSnisJqcHiOkpb6srABbhwpaQD1YX0J7iO7bDf7OIv3hIZYwgkL1S7EPsaJ2BKQtOBGF0V6xkcrj3OmTwLkLOJtQ/YHhpkLWAT+BU/cxkUnINFhrVkyC3z34iiyL9siCUHspFFLXisSZiBOtF+WxFH5olooCvDHc9tw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=zLHl+mZizJC20uFS25P8gNhDwFmpSCZUyz5609eJQg0=; b=aLunLkGwJ/u8KH5Cfq09fY681iRzgO42ELbP4JgG7B59koemcqXhTHLO5FwCEGKB78R5/87YG0sFGpK2aEdtSQgLCkvKDrfYz07gtUBKgS47EO0TohigSGcNx13NbcFm2rXMFLkgOol2lf9yJqVKvbKlIg2HFIVqgdP+GgWCgz8b7eYscc5ASGMaElO5DGzWgtHjV3HfAunCJyVqEy5NaoO4aCY0zCJwsx9F3oABI5Btt/hF8p0RJs4t1f3twt62+YcGdb4Xx+YfIhuoG8gUQDcsKw1PsLCCM25BUdU5EI5cBh5i85XvRnucYhySvVr1XH8JrE8nmiHN2DwlBxdb2Q== ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=t2data.com; dmarc=pass action=none header.from=t2data.com; dkim=pass header.d=t2data.com; arc=none DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=t2datacom.onmicrosoft.com; s=selector1-t2datacom-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=zLHl+mZizJC20uFS25P8gNhDwFmpSCZUyz5609eJQg0=; b=f2z0kuaKF9iQQCoIOswMD2RuDuyT4ZklzBTlhDfnjgmgAG8QIln3k/aUQr6B4AiNGUc3evQOWWvO7HSAeIBWntWeNLhV5VkJRxTSY/4qRg5ijxjPPzzFIn04yb+lu6BlvfbbpNiaBi63KxVEV0SHAv8LoGGK+wxn8aCu4aYuQ+0= Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=t2data.com; Received: from DB9P251MB0618.EURP251.PROD.OUTLOOK.COM (2603:10a6:10:334::22) by DU0P251MB0628.EURP251.PROD.OUTLOOK.COM (2603:10a6:10:341::8) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7249.36; Thu, 8 Feb 2024 20:20:20 +0000 Received: from DB9P251MB0618.EURP251.PROD.OUTLOOK.COM ([fe80::1398:9f4f:da3f:1862]) by DB9P251MB0618.EURP251.PROD.OUTLOOK.COM ([fe80::1398:9f4f:da3f:1862%3]) with mapi id 15.20.7249.035; Thu, 8 Feb 2024 20:20:20 +0000 From: Christian Melki To: ptxdist@pengutronix.de Date: Thu, 8 Feb 2024 21:20:14 +0100 Message-Id: <20240208202014.2275897-1-christian.melki@t2data.com> X-Mailer: git-send-email 2.34.1 Content-Transfer-Encoding: 8bit Content-Type: text/plain X-ClientProxiedBy: GV3P280CA0058.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:9::28) To DB9P251MB0618.EURP251.PROD.OUTLOOK.COM (2603:10a6:10:334::22) MIME-Version: 1.0 X-MS-PublicTrafficType: Email X-MS-TrafficTypeDiagnostic: DB9P251MB0618:EE_|DU0P251MB0628:EE_ X-MS-Office365-Filtering-Correlation-Id: cd9fb622-9c5d-42ef-eac0-08dc28e35f7d X-MS-Exchange-SenderADCheck: 1 X-MS-Exchange-AntiSpam-Relay: 0 X-Microsoft-Antispam: BCL:0; X-Microsoft-Antispam-Message-Info: 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 X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB9P251MB0618.EURP251.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230031)(366004)(39830400003)(396003)(346002)(376002)(136003)(230922051799003)(451199024)(64100799003)(1800799012)(186009)(36756003)(38350700005)(41300700001)(6916009)(66556008)(5660300002)(66476007)(966005)(6486002)(8936002)(8676002)(66946007)(86362001)(478600001)(44832011)(316002)(6506007)(52116002)(2906002)(83380400001)(38100700002)(4744005)(6666004)(26005)(2616005)(6512007)(1076003); DIR:OUT; SFP:1102; X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1 X-MS-Exchange-AntiSpam-MessageData-0: =?us-ascii?Q?KVV/7L0R2pb4ukTiIkSJamiso/vd9kPeuW2RMrTo391PIEpGJFrMiyt1SfmP?= =?us-ascii?Q?9v47ygUvxWlrnakpUduNpJaM0Zx+E8t1qxqabuq8RWlzTw0Bs3BNxzzWJEv0?= =?us-ascii?Q?9D8oATBTl6BslL/yPJYPMhJoczYxYTgDmILLkNkQFfax1gWHtGBaYmKhmx8+?= =?us-ascii?Q?bBrSPYLsROCyeBdyAqsSRNn6mjDLrCu2eG3UgclFlqizjeQ5+h6zx+xDvbXS?= =?us-ascii?Q?CBmvo7J+3mHpRvZpN7qGPpW/eFVQQcT4F8oALKgicBSGDxRfBkPWRIc8T3Th?= =?us-ascii?Q?iXQdG6c/INrwq7P4vdH4NWxvw3XL5iQxxuALHVS7GfsH7UyLzJUOA3aygCp7?= =?us-ascii?Q?riq56AsjfB2SWmGVrd4Sb7Yeeh9e2h9kXEPcPe0Nc5492pt+ejasugH6iYmJ?= =?us-ascii?Q?B2ZPGP3yUFfAzVFwiSz64qgeT3NEjxD5Zi+bVISU1AIHA89WvBSK/d+KZycq?= =?us-ascii?Q?cASLIp3K5pYoy3quAHhK/qQ6kMX1zUxVWlm4/mFUTP6T0ZQVD/0fmm2fItZA?= =?us-ascii?Q?nnPfA788GBxY2fRSyNl8KLXSNLEcP5bJ7+wYc1LndixVzBtJ66osJLNTfn8k?= =?us-ascii?Q?45vjNdbcyOxlvew0pbQlZReXmm+OIalZi+iZk/90CudrIgRiAiGxT0MQBIXA?= =?us-ascii?Q?CD1aPp7g0IcYVnU2/2vE6zalZ8afQZSnjrUXb584WxEzVbBct256LUKdastF?= =?us-ascii?Q?9iTV/4ZWyy06MlqVtEagtuJrGR5jgipP+ZVhkXitoAFczc98qXnOiSBIz6hw?= =?us-ascii?Q?Un0fgMC6iMFMNouT89HaCmtykOwOOt0qqyzr9h0o8tnZEOq6nGbhm0wtGsVO?= =?us-ascii?Q?adMD03DvVDKaVyiTYbAxl/VXGhlusV6Njkp0jVftOsz9zIxRf7xMXavx/eMX?= =?us-ascii?Q?fjchjN2o4fUBfX+2kmuqPpXEf5t4vzURRUpnEhphzuGb3UPIr4Tw9G8ev5BV?= =?us-ascii?Q?pN1QKhUZlD60dnZjMiEYixNqJ6vgMn9j01rKGrf1aDKMJKoK+sGVqfTNweUd?= =?us-ascii?Q?P117XW5nsElJ7NQSKME+vTKKbWO7X7ONf+XcyDLq+qwuTdbSlb0YtJEOE0yo?= =?us-ascii?Q?Iz4M+8tPwvkAjR2485swsJizCP7wSQm/lPNgAhBPqX3bJdeZW+uaXB/LcC5h?= =?us-ascii?Q?n6fOADwjRsRvJ2SG+vPLTSFrPdC/J5LxMRD9/NqcD5CQhYSUNFsR75LdE10q?= =?us-ascii?Q?UiFWchNmQwJcunJgV2jd7OpX0+JcRMexU1FlxQ6G0h+SYhMDfP0L5oRX2hgY?= =?us-ascii?Q?c0/k2IwCr+gw8ztw83wCoSLOL4fsEJWcB11mWf0C6S2Zm5pq7e1Zt+AnQVeZ?= =?us-ascii?Q?n/4nK9ui6mRycjvdy/X6mdm+AUUWyFR5IKpf2rRCqdmG22oM+cq/JHnwSc9R?= =?us-ascii?Q?gu9siiEHefxn9Rt+HzNrnzOHnkkRYH9PlaVzN1sObxFJiTh/8NAQJmz/a0eE?= =?us-ascii?Q?dL+PisjM2hoV+yo9F7Xyvugj+5+FGoDrNuEQAr0U6dLRaSIE1KmO94RKeHpH?= =?us-ascii?Q?lyUrpSiUBx0o/L6cfBb1sm4s58Eh2vPeNtMo3eeW/GsWVKLNxbon4+Mkbflm?= =?us-ascii?Q?dREvS9aOAEe+5VxOAgntGFXR1RxhKWpHLzIljRgmz3zvtb6HrZPCYssSUdAV?= =?us-ascii?Q?BA=3D=3D?= X-OriginatorOrg: t2data.com X-MS-Exchange-CrossTenant-Network-Message-Id: cd9fb622-9c5d-42ef-eac0-08dc28e35f7d X-MS-Exchange-CrossTenant-AuthSource: DB9P251MB0618.EURP251.PROD.OUTLOOK.COM X-MS-Exchange-CrossTenant-AuthAs: Internal X-MS-Exchange-CrossTenant-OriginalArrivalTime: 08 Feb 2024 20:20:20.6089 (UTC) X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 27928da5-aacd-4ba1-9566-c748a6863e6c X-MS-Exchange-CrossTenant-MailboxType: HOSTED X-MS-Exchange-CrossTenant-UserPrincipalName: 6KctsgBDmf1dZC8po5ZiKCHxNbNyi8SoprrNyYW26MhxG+pAQhSBrTcnf0g+H9Eu4ZJNjbTP3dqvXgD5hToSglnIk9CGpfsnYtboF7Onpgw= X-MS-Exchange-Transport-CrossTenantHeadersStamped: DU0P251MB0628 X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on metis.whiteo.stw.pengutronix.de X-Spam-Level: X-Spam-Status: No, score=-2.2 required=4.0 tests=AWL,BAYES_00,DKIM_SIGNED, DKIM_VALID,RCVD_IN_DNSWL_NONE,RCVD_IN_MSPIKE_H2,SPF_HELO_PASS,SPF_PASS, T_SCC_BODY_TEXT_LINE autolearn=ham autolearn_force=no version=3.4.2 Subject: [ptxdist] [PATCH] expat: Version bump. 2.5.0 -> 2.6.0 X-BeenThere: ptxdist@pengutronix.de X-Mailman-Version: 2.1.29 Precedence: list List-Id: PTXdist Development Mailing List List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: ptxdist@pengutronix.de Sender: "ptxdist" X-SA-Exim-Connect-IP: 127.0.0.1 X-SA-Exim-Mail-From: ptxdist-bounces@pengutronix.de X-SA-Exim-Scanned: No (on metis.whiteo.stw.pengutronix.de); SAEximRunCond expanded to false https://github.com/libexpat/libexpat/blob/R_2_6_0/expat/Changes Plugs CVEs: CVE-2023-52425 - Fix quadratic runtime issues with big tokens CVE-2023-52426 - Fix billion laughs attacks without XML_DTD Signed-off-by: Christian Melki --- rules/expat.make | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/rules/expat.make b/rules/expat.make index d12144458..418496b14 100644 --- a/rules/expat.make +++ b/rules/expat.make @@ -16,8 +16,8 @@ PACKAGES-$(PTXCONF_EXPAT) += expat # # Paths and names # -EXPAT_VERSION := 2.5.0 -EXPAT_MD5 := 5e9974d422dc4b157f300568ad28ebf6 +EXPAT_VERSION := 2.6.0 +EXPAT_MD5 := eeb1cf76f51dadebff73fe6aa317ba37 EXPAT := expat-$(EXPAT_VERSION) EXPAT_SUFFIX := tar.bz2 EXPAT_RELEASE := R_$(subst .,_,$(EXPAT_VERSION)) -- 2.34.1