[xml/sgml-pkgs] Bug#901817: libxml2 - DoS - null deref - xmlXPathCompOpEval

Salvatore Bonaccorso carnil at debian.org
Thu Jul 19 21:21:32 BST 2018


Control: retitle -1 libxml2: CVE-2018-14404: NULL pointer deref in xpath.c:xmlXPathCompOpEval()
Control: forwarded -1 https://gitlab.gnome.org/GNOME/libxml2/issues/10

Hi,

On Thu, Jun 28, 2018 at 11:28:18AM +1000, Sam Fowler wrote:
> On Tue, 19 Jun 2018 22:39:34 +0200 Salvatore Bonaccorso
> <carnil at debian.org> wrote:> Can you please report the upstream directly
> in the upstream bugzilla
> > and once you have the bug reference, add then mark this bug here as
> > forwarded to the upstream one?
> > 
> > https://www.debian.org/Bugs/server-control#forwarded
> > 
> > Thanks already.
> > 
> > Regards,
> 
> Couldn't see this in GNOME bugzilla so filed:
> 
> https://gitlab.gnome.org/GNOME/libxml2/issues/10

Thanks!

This issue has been assigned CVE-2018-14404.

Regards,
Salvatore



More information about the debian-xml-sgml-pkgs mailing list