[Git][security-tracker-team/security-tracker][master] Add two new libxml-parser-perl issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Mar 19 12:09:48 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
55fa0621 by Salvatore Bonaccorso at 2026-03-19T13:09:21+01:00
Add two new libxml-parser-perl issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,15 @@
+CVE-2006-10003
+	- libxml-parser-perl <unfixed>
+	NOTE: https://lists.security.metacpan.org/cve-announce/msg/38106362/
+	NOTE: https://rt.cpan.org/Ticket/Display.html?id=19860
+	NOTE: https://github.com/cpan-authors/XML-Parser/issues/39
+	NOTE: https://github.com/cpan-authors/XML-Parser/commit/3eb9cc95420fa0c3f76947c4708962546bf27cfd
+CVE-2006-10002
+	- libxml-parser-perl <unfixed>
+	NOTE: https://lists.security.metacpan.org/cve-announce/msg/38106361/
+	NOTE: https://rt.cpan.org/Ticket/Display.html?id=19859
+	NOTE: https://github.com/cpan-authors/XML-Parser/issues/64
+	NOTE: https://github.com/cpan-authors/XML-Parser/commit/6b291f4d260fc124a6ec80382b87a918f372bc6b
 CVE-2026-4407 (Out-of-bounds array write in Xpdf 4.06 and earlier, due to incorrect v ...)
 	- xpdf <not-affected> (Debian uses poppler)
 CVE-2026-4120 (The Info Cards \u2013 Add Text and Media in Card Layouts plugin for Wo ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/55fa062156e17e43c7c1052f511329d561c76e9e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/55fa062156e17e43c7c1052f511329d561c76e9e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260319/e10fbca1/attachment.htm>


More information about the debian-security-tracker-commits mailing list