#
aa071e6e |
| 12-Nov-2024 |
bluhm <bluhm@openbsd.org> |
Update libexpat to version 2.6.4.
Relevant for OpenBSD are security fix #915, other changes #905 #902 #904 #317 #918 #914. Major library bump is necessary as new error constant has been added to a
Update libexpat to version 2.6.4.
Relevant for OpenBSD are security fix #915, other changes #905 #902 #904 #317 #918 #914. Major library bump is necessary as new error constant has been added to a public header file. CVE-2024-50602
OK matthieu@ tb@ deraadt@
show more ...
|
#
61ad8a07 |
| 05-Sep-2024 |
bluhm <bluhm@openbsd.org> |
Update libexpat to version 2.6.3.
Relevant for OpenBSD are security fixes #887 #890 #888 #891 #889 #892, other changes #886 #885, infrastructure #880. No library bump necessary. CVE-2024-45490 CVE
Update libexpat to version 2.6.3.
Relevant for OpenBSD are security fixes #887 #890 #888 #891 #889 #892, other changes #886 #885, infrastructure #880. No library bump necessary. CVE-2024-45490 CVE-2024-45491 CVE-2024-45492
OK tb@ deraadt@
show more ...
|
#
c033f770 |
| 01-Apr-2024 |
bluhm <bluhm@openbsd.org> |
Update libexpat to version 2.6.2.
The fix for CVE-2024-28757 has been applied earlier. Relevant for OpenBSD are bug fixes #839 #841, and other change #829. No library bump is necessary.
OK deraad
Update libexpat to version 2.6.2.
The fix for CVE-2024-28757 has been applied earlier. Relevant for OpenBSD are bug fixes #839 #841, and other change #829. No library bump is necessary.
OK deraadt@
show more ...
|
#
bd8f1dc3 |
| 11-Feb-2024 |
bluhm <bluhm@openbsd.org> |
Update libexpat to version 2.6.0.
This fixes CVE-2023-52425. OpenBSD is not affected by CVE-2023-52426. Relevant for OpenBSD are security fixes #789 #814, bug fixes #753 #812 #813, other changes #7
Update libexpat to version 2.6.0.
This fixes CVE-2023-52425. OpenBSD is not affected by CVE-2023-52426. Relevant for OpenBSD are security fixes #789 #814, bug fixes #753 #812 #813, other changes #771 #788 #764 #765, and examples, docs, compiler warnings, clang-tidy, tests. Only a minor library bump is necessary, this has been discussed with tb@ guenther@ kettenis@.
OK deraadt@
show more ...
|
#
751a8f41 |
| 27-Oct-2022 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.5.0. This fixes CVE-2022-43680. Relevant for OpenBSD are security fixes #616 #649 #650 and bug fixes #612 #645 #613 #654 #616 #652 #653. No library bump necessary. OK tb@
|
#
9029d806 |
| 20-Sep-2022 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.4.9. This fixes CVE-2022-40674. Relevant for OpenBSD are security fixes #629 #640 and other changes #610 #643. No library bump necessary. OK deraadt@
|
#
680fbc60 |
| 09-Mar-2022 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.4.7. Relevant for OpenBSD are bug fixes #572 #577 and other changes #577 #579 #575 #574 #569 #571. No library bump necessary. tested and OK tb@
|
#
253fd6bf |
| 22-Feb-2022 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.4.6. This fixes CVE-2022-25235, CVE-2022-25236 CVE-2022-25313, CVE-2022-25314, and CVE-2022-25315. Relevant for OpenBSD are security fixes #558 #559 #560 #561 #562 and bug fixe
Update libexpat to 2.4.6. This fixes CVE-2022-25235, CVE-2022-25236 CVE-2022-25313, CVE-2022-25314, and CVE-2022-25315. Relevant for OpenBSD are security fixes #558 #559 #560 #561 #562 and bug fixes #566. No library bump necessary. OK tb@
show more ...
|
#
7f817ade |
| 31-Jan-2022 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.4.4. This fixes CVE-2022-23852 and CVE-2022-23990. Relevant for OpenBSD are security fixes #550 #551 and other changes #553 (missing in change log). No library bump necessary.
Update libexpat to 2.4.4. This fixes CVE-2022-23852 and CVE-2022-23990. Relevant for OpenBSD are security fixes #550 #551 and other changes #553 (missing in change log). No library bump necessary. OK millert@
show more ...
|
#
2c19dcf8 |
| 17-Jan-2022 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.4.3. This fixes CVE-2021-45960, CVE-2021-46143, and CVE-2022-22822 to CVE-2022-22827. Relevant for OpenBSD are security fixes #531 #534 #532 #538 #539 and other changes #527 #5
Update libexpat to 2.4.3. This fixes CVE-2021-45960, CVE-2021-46143, and CVE-2022-22822 to CVE-2022-22827. Relevant for OpenBSD are security fixes #531 #534 #532 #538 #539 and other changes #527 #513 #514 #502 #503. No library bump necessary. OK millert@
show more ...
|
#
08819b41 |
| 26-May-2021 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.4.1. This fixes CVE-2013-0340. Relevant for OpenBSD are security fixes #34 #466 #484 and other changes #467 #473 #483. A new error number in a public header requires a major l
Update libexpat to 2.4.1. This fixes CVE-2013-0340. Relevant for OpenBSD are security fixes #34 #466 #484 and other changes #467 #473 #483. A new error number in a public header requires a major library bump. Two functions have been added to API. OK tb@
show more ...
|
#
2a4a206e |
| 29-Dec-2020 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.2.10. Relevant are only bug fixes #390 #395 #398 #404 #405 and other changes #354 #355 #412. OK deraadt@
|
#
28ce3119 |
| 25-Sep-2019 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.2.8. CVE-2019-15903 has been fixed earlier in our tree. Relevant is only bug fix #240. Most of the upstream diff is automated source format change. OK deraadt@
|
#
2e724bc9 |
| 23-Aug-2017 |
bluhm <bluhm@openbsd.org> |
Update libexpat to 2.2.4. Fix copying partial UTF-8 characters. OK deraadt@
|
#
2feb5d2a |
| 30-Jun-2017 |
bluhm <bluhm@openbsd.org> |
Update libexpat to version 2.2.1 which has some security fixes. - CVE-2017-9233 CVE-2016-9063 CVE-2016-5300 CVE-2016-4472 CVE-2016-0718 CVE-2015-2716 CVE-2015-1283 CVE-2012-6702 CVE-2012-0876 have
Update libexpat to version 2.2.1 which has some security fixes. - CVE-2017-9233 CVE-2016-9063 CVE-2016-5300 CVE-2016-4472 CVE-2016-0718 CVE-2015-2716 CVE-2015-1283 CVE-2012-6702 CVE-2012-0876 have been addressed. Not all of them affect OpenBSD as we had fixes before. - Upstream uses arc4random_buf(3) now. Delete all code for other entropy sources to make sure to compile the correct one. Our library already used arc4random(3) before. - The overflow fixes in rev 1.11 and 1.12 of lib/xmlparse.c have been commited upstream in a different way. Use the upstream code to make maintenance easier. - Although it should be ABI compatible, there is a new global symbol align_limit_to_full_utf8_characters. As it is in lib/internal.h, add a Symbols.map to restrict the export. Do not bump the shared library version. - Use the internal expat's siphash.h. ports build ajacoutot@; move ahead deraadt@
show more ...
|
#
695f0d7b |
| 09-May-2016 |
rpointel <rpointel@openbsd.org> |
update libexpat to 2.1.1. ok deraadt@ (thanks to sebastian[@]pipping[.]org for information).
|
#
c05e1f5d |
| 20-Mar-2016 |
krw <krw@openbsd.org> |
" the the " -> " the ", or in a couple of cases replace the superfluous "the" with the obviously intended word.
Started with a "the the" spotted by Mihal Mazurek.
|
#
6400bc34 |
| 01-Apr-2012 |
rpointel <rpointel@openbsd.org> |
update libexpat to 2.1.0. use arc4random instead of rand/srand in generate_hash_secret_salt, spotted by nicm@ and deraadt@. ok nicm@ deraadt@.
|
#
0ad1cb5a |
| 26-Jun-2010 |
eric <eric@openbsd.org> |
sync libexpat with upstream. mostly formating cleanup, no binary change.
ok deraadt nicm
|
#
b26ab0f8 |
| 30-Aug-2007 |
matthieu <matthieu@openbsd.org> |
Update to expat 2.0.1. ok deraadt@
|
#
7d36914f |
| 06-May-2006 |
alek <alek@openbsd.org> |
Update to 2.0.0; keep our local changes
ok espie@, djm@
|
#
315aa56a |
| 22-Sep-2004 |
espie <espie@openbsd.org> |
say goodbye to valid-xhtml icon (what do we care, and it's a binary file).
|
#
1a3ddf8c |
| 22-Sep-2004 |
espie <espie@openbsd.org> |
libexpat: a simple xml parser library, used by X11 and some ports.
|