From b9fc63c20df1fdeead24c989c4aca4090830f9d4 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Tue, 1 Nov 2022 03:06:32 +0000 Subject: gentoo auto-resync : 01:11:2022 - 03:06:31 --- metadata/glsa/glsa-202210-39.xml | 43 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 43 insertions(+) create mode 100644 metadata/glsa/glsa-202210-39.xml (limited to 'metadata/glsa/glsa-202210-39.xml') diff --git a/metadata/glsa/glsa-202210-39.xml b/metadata/glsa/glsa-202210-39.xml new file mode 100644 index 000000000000..ef2d7e2ae394 --- /dev/null +++ b/metadata/glsa/glsa-202210-39.xml @@ -0,0 +1,43 @@ + + + + libxml2: Multiple Vulnerabilities + Multiple vulnerabilities have been found in libxml2, the worst of which could result in arbitrary code execution. + libxml2 + 2022-10-31 + 2022-10-31 + 877149 + remote + + + 2.10.3 + 2.10.3 + + + +

libxml2 is the XML C parser and toolkit developed for the GNOME project.

+
+ +

Multiple vulnerabilities have been discovered in libxml2. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All libxml2 users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=dev-libs/libxml2-2.10.3" + +
+ + CVE-2022-40303 + CVE-2022-40304 + + ajak + ajak +
\ No newline at end of file -- cgit v1.2.3