[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Expat 2.4.0 (and 2.4.1) with security fixes released
From: |
Sebastian Pipping |
Subject: |
Re: Expat 2.4.0 (and 2.4.1) with security fixes released |
Date: |
Wed, 2 Jun 2021 14:39:58 +0200 |
User-agent: |
Mozilla/5.0 (X11; Linux x86_64; rv:78.0) Gecko/20100101 Thunderbird/78.10.2 |
Hi everyone,
more than half of you have updated to 2.4.1 already [1], very nice.
Please let me know if you need any help with updating or backporting or
something like that.
Thanks and best
Sebastian
[1] https://repology.org/project/expat/information
On 24.05.21 01:01, Sebastian Pipping wrote:
> Hello everyone!
>
>
> Expat 2.4.0 (and 2.4.1) most importantly brings protection against
> Billion Laughs Attacks (CVE-2013-0340). There is a blog post [1] and
> the change log with more details.
>
> If you have patches for Expat that are still required with version
> 2.4.1, please send them my way. Thank you!
>
> Best
>
>
>
> Sebastian
>
>
> [1]
> https://blog.hartwork.org/posts/cve-2013-0340-billion-laughs-fixed-in-expat-2-4-0/
> [2] https://github.com/libexpat/libexpat/blob/R_2_4_1/expat/Changes
>
[Prev in Thread] |
Current Thread |
[Next in Thread] |
- Re: Expat 2.4.0 (and 2.4.1) with security fixes released,
Sebastian Pipping <=