Bug#866676: libxml-libxml-perl: CVE-2017-10672: Use-after-free in XML::LibXML::Node::replaceChild

2017-08-04 Thread Salvatore Bonaccorso
Hi I backed out the commit again for now. There were several FTBFS on release architectures after that upload (not sure if all are related to the fix), but this might need a proper investigation first. Regards, Salvatore

Bug#866676: libxml-libxml-perl: CVE-2017-10672: Use-after-free in XML::LibXML::Node::replaceChild

2017-06-30 Thread Salvatore Bonaccorso
Source: libxml-libxml-perl Version: 2.0116+dfsg-1 Severity: grave Tags: security upstream Forwarded: https://rt.cpan.org/Ticket/Display.html?id=122246 Hi, the following vulnerability was published for libxml-libxml-perl. Filling this one for now as severity grave, but we might adjust later the se