[libxml2] Created tag CVE-2015-7942



The signed tag 'CVE-2015-7942' was created.

Tagger: Daniel Veillard <veillard redhat com>
Date: Tue Nov 3 16:08:41 2015 +0800

    Fix for CVE-2015-7942

Changes since the last tag 'v2.9.2':

Christopher Swenson (1):
      Fix timsort invariant loop re: Envisage article

Daniel Veillard (16):
      Revert "Missing initialization for the catalog module"
      Fix missing entities after CVE-2014-3660 fix
      Adding example from bugs 738805 to regression tests
      Update Win32 configure.js to search for configure.ac
      Stop parsing on entities boundaries errors
      Cleanup conditional section error handling
      Fix support for except in nameclasses
      CVE-2015-1819 Enforce the reader to run in constant memory
      Do not process encoding values if the declaration if broken
      Fail parsing early on if encoding conversion failed
      Recover unescaped less-than character in HTML recovery parsing
      Avoid XSS on the search of xmlsoft.org
      Fix the spurious ID already defined error
      Fix a bug on name parsing at the end of current input buffer
      Fix a bug in CData error handling in the push parser
      Another variation of overflow in Conditional sections

Gaurav Gupta (1):
      Add missing Null check in xmlParseExternalEntityPrivate

Martin von Gagern (1):
      xmlMemUsed is not thread-safe

Michael Catanzaro (1):
      Silence clang's -Wunknown-attribute

Michael Heimpold (1):
      threads: use forward declarations only for glibc

Nick Wellnhofer (7):
      Account for ID attributes in xmlSetTreeDoc
      Don't add IDs in xmlSetTreeDoc
      Allow attributes on descendant-or-self axis
      Fix order of root nodes
      Add a couple of XPath tests
      Regression test for bug #695699
      Fix previous change to node sort order

Patrick Monnerat (1):
      os400: fix various ILE/RPG types definitions. Adjust build scripts.         - A typo caused an 
undefined symbol reference.         - A structure field name did not match the corresponding C name due to a 
typo.         - Some structured fields were not properly aligned.         - The long/ulong types were wrongly 
mapped to 64-bit types.         - A typo in a /include directive caused a compilation error.         - Doc 
files copy now converts from UTF-8 and split long lines.         - Adjust /include file name mapping 
translation for proper prefix handling.

Philip Withnall (1):
      Remove various unused value assignments

Samuel Martin (1):
      libxml2-config.cmake.in: update include directories

Scott Graham (1):
      Fix a self assignment issue raised by clang

Shaun McCance (1):
      Allow HTML serializer to output HTML5 DOCTYPE

Steve Nairn (1):
      Fix the fix to Windows locking

Tomas Radej (1):
      Add Python 3 rpm subpackage


[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]