[xml/sgml-pkgs] Bug#493162: Bug#493162: libxslt1.1: buffer overflow [CVE-2008-2935]

Thijs Kinkhorst thijs at debian.org
Fri Aug 1 08:19:32 UTC 2008


On Friday 1 August 2008 10:09, you wrote:
> On Fri, Aug 01, 2008 at 09:11:05AM +0200, Thijs Kinkhorst <thijs at debian.org> 
wrote:
> > tags 493162 patch
> > thanks
>
> Wouldn't a lot of the strings in this patch be better off allocated
> on the stack?

Sorry, I should have made it clearer that I was just forwarding information we 
got through vendor-sec and that has been applied to the upstream repository. 
I've got no personal involvement with it.


cheers,
Thijs
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 481 bytes
Desc: not available
Url : http://lists.alioth.debian.org/pipermail/debian-xml-sgml-pkgs/attachments/20080801/29f680ac/attachment-0001.pgp 


More information about the debian-xml-sgml-pkgs mailing list