ports/164270: libxml2 CVE-2011-3919 patch

kj b4039413 at nwldx.com
Wed Jan 18 06:10:11 UTC 2012


>Number:         164270
>Category:       ports
>Synopsis:       libxml2 CVE-2011-3919 patch
>Confidential:   no
>Severity:       non-critical
>Priority:       high
>Responsible:    freebsd-ports-bugs
>State:          open
>Quarter:        
>Keywords:       
>Date-Required:
>Class:          sw-bug
>Submitter-Id:   current-users
>Arrival-Date:   Wed Jan 18 06:10:10 UTC 2012
>Closed-Date:
>Last-Modified:
>Originator:     kj
>Release:        FreeBSD 8
>Organization:
>Environment:
8.1-RELEASE-p5 FreeBSD 8.1-RELEASE-p5 #0: Tue Sep 27 16:18:26 UTC 2011     root at i386-builder.daemonology.net:/usr/obj/usr/src/sys/GENERIC  i386
>Description:
CVE-2011-3919 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3919
>How-To-Repeat:

>Fix:
*** parser.c.org	Wed Jan 18 15:01:17 2012
--- parser.c	Wed Jan 18 15:02:38 2012
***************
*** 2709,2715 ****
  
  		buffer[nbchars++] = '&';
  		if (nbchars > buffer_size - i - XML_PARSER_BUFFER_SIZE) {
! 		    growBuffer(buffer, XML_PARSER_BUFFER_SIZE);
  		}
  		for (;i > 0;i--)
  		    buffer[nbchars++] = *cur++;
--- 2709,2715 ----
  
  		buffer[nbchars++] = '&';
  		if (nbchars > buffer_size - i - XML_PARSER_BUFFER_SIZE) {
! 		    growBuffer(buffer, i + XML_PARSER_BUFFER_SIZE);
  		}
  		for (;i > 0;i--)
  		    buffer[nbchars++] = *cur++;

>Release-Note:
>Audit-Trail:
>Unformatted:



More information about the freebsd-ports-bugs mailing list