[Bug 210298] textproc/libxslt: Update to 1.1.29

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Mon Jun 20 18:42:26 UTC 2016


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=210298

--- Comment #8 from Mark Felder <feld at FreeBSD.org> ---
After further review, I cannot be sure there are any vulnerabilities addressed
by 1.1.29. The CVEs referenced are only for Google Chrome and the changelog for
libxslt only notes CVE-2015-7995 which we already fixed with a patch to the
port. 

This is a confusing situation because I don't know if it would be possible for
another consumer of libxslt to hit the same vulnerabilities that Chrome did.

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are on the CC list for the bug.


More information about the freebsd-gnome mailing list