Aha!  In fact, we did XML_StopParser() specifically to handle that 
vulnerability.
 (The guy who sent out the alert was a real asshole about it too.) 
  
 So we just need to change the XML_MAJOR_VERSION we're looking for from >0
to >1 and that will take care of it, as your patch demonstrates.  Thanks!

 

Reply via email to