[Git][security-tracker-team/security-tracker][master] Reserve DLA-4522-1 for libxml-parser-perl

Guilhem Moulin (@guilhem) guilhem at debian.org
Sat Apr 4 08:09:27 BST 2026



Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker


Commits:
15d3d39b by Guilhem Moulin at 2026-04-04T09:09:19+02:00
Reserve DLA-4522-1 for libxml-parser-perl

- - - - -


2 changed files:

- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[04 Apr 2026] DLA-4522-1 libxml-parser-perl - security update
+	{CVE-2006-10003}
+	[bullseye] - libxml-parser-perl 2.46-2+deb11u1
 [02 Apr 2026] DLA-4521-1 libpng1.6 - security update
 	{CVE-2026-33416 CVE-2026-33636}
 	[bullseye] - libpng1.6 1.6.37-3+deb11u3


=====================================
data/dla-needed.txt
=====================================
@@ -217,12 +217,6 @@ libstb (abhijith)
   NOTE: 20251206: try to fix other CVEs and help with PU if needed (rouca/front-desk)
   NOTE: 20260226: Fixed CVE-2021-28021 CVE-2021-37789 CVE-2021-42715 CVE-2022-28041 CVE-2022-28042 with DLA-4493-1 (abhijith)
 --
-libxml-parser-perl (guilhem)
-  NOTE: 20260322: Added by Front-Desk (charles)
-  NOTE: 20260322: In dsa-needed, coordinate with secteam. CVE-2006-10002 only
-  NOTE: 20260322: affects elts. Patches for both CVEs were lost in the source
-  NOTE: 20260322: format 1.0 to 3.0 in 2.40-1, 2.36-1.1 has the patches. (charles)
---
 libxmltok
   NOTE: 20250421: Added by Front-Desk (ta)
   NOTE: 20250421: Also review all other expat CVEs. (bunk)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/15d3d39bcb7463b44f493143ca7686cddc078ff8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/15d3d39bcb7463b44f493143ca7686cddc078ff8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260404/eeb49d6e/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list