guix-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Expat 2.4.0 (and 2.4.1) with security fixes released


From: Sebastian Pipping
Subject: Re: Expat 2.4.0 (and 2.4.1) with security fixes released
Date: Wed, 2 Jun 2021 14:39:58 +0200
User-agent: Mozilla/5.0 (X11; Linux x86_64; rv:78.0) Gecko/20100101 Thunderbird/78.10.2

Hi everyone,


more than half of you have updated to 2.4.1 already [1], very nice.
Please let me know if you need any help with updating or backporting or
something like that.

Thanks and best



Sebastian


[1] https://repology.org/project/expat/information


On 24.05.21 01:01, Sebastian Pipping wrote:
> Hello everyone!
> 
> 
> Expat 2.4.0 (and 2.4.1) most importantly brings protection against
> Billion Laughs Attacks (CVE-2013-0340).  There is a blog post [1] and
> the change log with more details.
> 
> If you have patches for Expat that are still required with version
> 2.4.1, please send them my way.  Thank you!
> 
> Best
> 
> 
> 
> Sebastian
> 
> 
> [1]
> https://blog.hartwork.org/posts/cve-2013-0340-billion-laughs-fixed-in-expat-2-4-0/
> [2] https://github.com/libexpat/libexpat/blob/R_2_4_1/expat/Changes
> 




reply via email to

[Prev in Thread] Current Thread [Next in Thread]