Summary: | <dev-libs/expat-2.6.4 - NULL pointer dereference through function XML_ResumeParser | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Sebastian Pipping <sping> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | CONFIRMED --- | ||
Severity: | normal | ||
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://nvd.nist.gov/vuln/detail/CVE-2024-50602 | ||
See Also: |
https://github.com/libexpat/libexpat/pull/915 https://github.com/libexpat/libexpat/pull/920 |
||
Whiteboard: | A3 [glsa? cleanup] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 944819 | ||
Bug Blocks: |
Description
Sebastian Pipping
![]() The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=7095ab195b38b062d3662884f64d7cb3d8c3bca3 commit 7095ab195b38b062d3662884f64d7cb3d8c3bca3 Author: Sebastian Pipping <sping@gentoo.org> AuthorDate: 2024-11-07 02:05:05 +0000 Commit: Sebastian Pipping <sping@gentoo.org> CommitDate: 2024-11-07 02:05:05 +0000 dev-libs/expat: 2.6.4 with fix for CVE-2024-50602 Bug: https://bugs.gentoo.org/942969 Signed-off-by: Sebastian Pipping <sping@gentoo.org> dev-libs/expat/Manifest | 1 + dev-libs/expat/expat-2.6.4.ebuild | 100 ++++++++++++++++++++++++++++++++++++++ 2 files changed, 101 insertions(+) |