[Bug 249386] libxml2 - multiple vulnerabilities

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Thu Sep 17 07:00:04 UTC 2020


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=249386

            Bug ID: 249386
           Summary: libxml2 - multiple vulnerabilities
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
               URL: https://nvd.nist.gov/vuln/search/results?form_type=Adv
                    anced&results_type=overview&search_type=all&cpe_vendor
                    =cpe%3A%2F%3Axmlsoft&cpe_product=cpe%3A%2F%3Axmlsoft%3
                    Alibxml2&pub_start_date=01%2F21%2F2020&pub_end_date=09
                    %2F17%2F2020
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: Individual Port(s)
          Assignee: ports-bugs at FreeBSD.org
          Reporter: daniel.engberg.lists at pyret.net

Created attachment 218018
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=218018&action=edit
Patch for libxml2

Fixes CVE-2019-20388, CVE-2020-7595, CVE-2020-24977

As there's no public announcement as far as I can tell I'm not sure how I
should go about vuxml entry/entries.

Compile tested on FreeBSD 13.0-CURRENT #0 r364979 (AMD64)
Poudriere OK 12.1-RELEASE (AMD64)

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list