librsvg (2.36.3-0ubuntu1.1) quantal-security; urgency=medium
* SECURITY UPDATE: arbitrary file disclosure via XML External Entity
(XXE) issue.
- debian/patches/CVE-2013-1881.patch: implement stricter policy in
rsvg-base.c, rsvg-css.c, rsvg-io.c, rsvg-private.h.
- debian/control*: added appropriate Breaks as this updates requires
a fix to also be added to gtk+3.0.
- CVE-2013-1881
Date: 2014-03-14 15:43:16.580927+00:00
Changed-By: Marc Deslauriers <[email protected]>
https://launchpad.net/ubuntu/quantal/+source/librsvg/2.36.3-0ubuntu1.1
Sorry, changesfile not available.
--
Quantal-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/quantal-changes