Processed: Re: Bug#1006162: expat: autopkgtest regressions (from CVE-2022-25313 fix)

2022-02-19 Thread Debian Bug Tracking System
Processing control commands:

> tags -1 +confirmed
Bug #1006162 [src:expat] expat: autopkgtest regressions (from CVE-2022-25313 
fix)
Added tag(s) confirmed.

-- 
1006162: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1006162
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems



Bug#1006162: expat: autopkgtest regressions (from CVE-2022-25313 fix)

2022-02-19 Thread GCS
Control: tags -1 +confirmed

Hi Salvatore,

On Sun, Feb 20, 2022 at 8:15 AM Salvatore Bonaccorso  wrote:
> There appears to be regressions from the CVE-2022-25313 fix in 2.4.5.
> They are known already upstream, cf.
> https://github.com/NixOS/nixpkgs/pull/160826#issuecomment-1046074523
>
> I will hold of the planned expat security release until this is
> addressed.
 ACK, watching this GitHub issue and will update the package accordingly.

Thanks,
Laszlo/GCS



Bug#1006162: expat: autopkgtest regressions (from CVE-2022-25313 fix)

2022-02-19 Thread Salvatore Bonaccorso
Source: expat
Version: 2.4.5-1
Severity: serious
Justification: autopkgtest regression
X-Debbugs-Cc: car...@debian.org
Control: affects -1 
src:libxml-parser-perl,src:python2.7,src:python3.10,src;python3.9

Hi Laszlo,

There appears to be regressions from the CVE-2022-25313 fix in 2.4.5.
They are known already upstream, cf.
https://github.com/NixOS/nixpkgs/pull/160826#issuecomment-1046074523

I will hold of the planned expat security release until this is
addressed.

Regards,
Salvatore