Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 296839 - sci-libs/udunits bundles a copy of expat
Summary: sci-libs/udunits bundles a copy of expat
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: New packages (show other bugs)
Hardware: All Linux
: High normal
Assignee: Steve Arnold
URL:
Whiteboard:
Keywords:
Depends on:
Blocks: bundled-libs
  Show dependency tree
 
Reported: 2009-12-14 09:11 UTC by Diego Elio Pettenò (RETIRED)
Modified: 2009-12-15 06:13 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Diego Elio Pettenò (RETIRED) gentoo-dev 2009-12-14 09:11:16 UTC
And expat has been recently found vulnerable, not sure if that makes udunits vulnerable but it's something to look at.
Comment 1 Sébastien Fabbro (RETIRED) gentoo-dev 2009-12-14 17:46:34 UTC
which version of udunits?
Comment 2 Kevin Pyle 2009-12-15 00:01:08 UTC
This is probably from Diego's tinderbox work, in which case it will have pulled the latest ~arch unmasked version.  sci-libs/udunits-2.1.11 has a subdirectory named expat/, which at first glance appears to be a bundled copy of Expat.
Comment 3 Sébastien Fabbro (RETIRED) gentoo-dev 2009-12-15 06:13:50 UTC
Fixed in 2.1.11-r1