[xml/sgml-pkgs] Bug#496736: libxml2 security update breaks gdmgreeter

Sergio Gelato Sergio.Gelato at astro.su.se
Wed Aug 27 03:38:03 UTC 2008


Package: libxml2
Version: 2.6.27.dfsg-3

Since the latest security update to libxml2 ("Fix DoS which leads to
recursive evaluation of entities"), /usr/lib/gdm/gdmgreeter (package:
gdm version 2.6.14-1) crashes (SIGSEGV) just after reading
/usr/share/gdm/themes/happygnome/background.svg. Here is a backtrace
from gdb:

#0  0xb765a36f in mallopt () from /lib/tls/i686/cmov/libc.so.6
#1  0xb765a732 in free () from /lib/tls/i686/cmov/libc.so.6
#2  0xb7772293 in xmlParseEntityDecl () from /usr/lib/libxml2.so.2
#3  0xb77732a3 in xmlParseMarkupDecl () from /usr/lib/libxml2.so.2
#4  0xb777334e in xmlParseMarkupDecl () from /usr/lib/libxml2.so.2
#5  0xb7777df8 in xmlParseChunk () from /usr/lib/libxml2.so.2
#6  0xb798e2f0 in rsvg_error_quark () from /usr/lib/librsvg-2.so.2
#7  0xb79939fb in rsvg_handle_new_gz () from /usr/lib/librsvg-2.so.2
#8  0xb7993b1e in rsvg_pixbuf_from_file_at_size () from
/usr/lib/librsvg-2.so.2
#9  0xb7993b56 in rsvg_pixbuf_from_file () from /usr/lib/librsvg-2.so.2
#10 0x08056a5f in ?? ()
#11 0x0811bba8 in ?? ()
#12 0x00000000 in ?? ()





More information about the debian-xml-sgml-pkgs mailing list