Processed: Re: Bug#1061472: bullseye-pu: package tinyxml/2.6.2-4+deb11u2

2024-01-31 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1061472 [release.debian.org] bullseye-pu: package tinyxml/2.6.2-4+deb11u2 Added tag(s) confirmed. -- 1061472: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1061472 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1061472: bullseye-pu: package tinyxml/2.6.2-4+deb11u2

2024-01-31 Thread Adam D. Barratt
Control: tags -1 + confirmed On Tue, 2024-01-30 at 14:47 +0100, Guilhem Moulin wrote: > On Thu, 25 Jan 2024 at 04:44:12 +0100, Guilhem Moulin wrote: > > [ Changes ] > > > > Fix CVE-2023-34194: Reachable assertion (and application exit) via > > a > > crafted XML document with a '\0' located after

Bug#1061472: bullseye-pu: package tinyxml/2.6.2-4+deb11u2

2024-01-30 Thread Guilhem Moulin
On Thu, 25 Jan 2024 at 04:44:12 +0100, Guilhem Moulin wrote: > [ Changes ] > > Fix CVE-2023-34194: Reachable assertion (and application exit) via a > crafted XML document with a '\0' located after whitespace. Per https://bugs.debian.org/1061473#12 I guess you'd like CVE-2023-40462 to be removed fr

Bug#1061472: bullseye-pu: package tinyxml/2.6.2-4+deb11u2

2024-01-24 Thread Guilhem Moulin
Package: release.debian.org Severity: normal Tags: bullseye User: release.debian@packages.debian.org Usertags: pu X-Debbugs-Cc: tiny...@packages.debian.org Control: affects -1 + src:tinyxml [ Reason ] Fix CVE-2023-34194: Reachable assertion (and application exit) via a crafted XML document wi