48 Commits

Author SHA1 Message Date
Funda Wang
7027ed1fc7 fix CVE-2025-32414 2025-05-14 17:14:11 +08:00
Funda Wang
1459eac6ed fix CVE-2025-32415 2025-04-18 12:53:03 +08:00
Funda Wang
a81f671525 fix CVE-2024-56171, CVE-2025-24928, CVE-2025-27113 2025-02-19 14:13:54 +08:00
Linux_zhang
a8307d1b64 fix CVE-2022-49043 2025-02-11 15:59:09 +08:00
张少宁
59483f13ae
fix bad date in changelog
Signed-off-by: 张少宁 <zhangshaoning@uniontech.com>
2024-06-17 05:37:47 +00:00
cenhuilin
e61c08dc4b fix CVE-2024-34459 2024-05-14 10:42:26 +08:00
zhuofeng
241736ed93 fix CVE-2022-2309 2024-03-26 14:29:45 +08:00
willwolf
7626453fca fix CVE-2024-25062
Signed-off-by: willwolf <hehuazhen@huawei.com>
2024-02-19 15:04:44 +08:00
willwolf
44a51b57b0 fix CVE-2023-45322
Signed-off-by: willwolf <hehuazhen@huawei.com>
(cherry picked from commit f182b37f3087868dd30322b5ccc3a82e2f00e78a)
2023-10-30 10:18:50 +08:00
liningjie
d5bf2ad303 parser: Fix old SAX1 parser with custom callbacks 2023-09-26 14:17:53 +08:00
BruceGW
af8676cc97 fix CVE-2023-28484 CVE-2023-29469 2023-04-23 11:51:06 +08:00
fly_fzc
0128c8e2b0 backport upstream patches 2022-11-21 10:42:39 +08:00
fly_fzc
8c40086f01 fix CVE-2022-40303 CVE-2022-40304 2022-11-08 17:14:14 +08:00
hubin
f625f9fc9f remove recommend in spec
Signed-off-by: hubin <hubin73@huawei.com>
2022-09-14 17:40:17 +08:00
fly_fzc
3d54850386 Fix Obsoletes in spec 2022-09-13 09:21:35 +08:00
fly_fzc
a22899ccc7 Fix CVE-2016-3709 2022-08-08 11:14:03 +08:00
fuanan
2cb02bdd35 Fix memory leaks in xmlACatalogAdd when xmlHashAddEntry failed 2022-06-24 10:07:40 +08:00
fuanan
54189c84f0 Fix memory leaks for xmlACatalogAdd 2022-06-16 20:06:35 +08:00
fuanan
0812abf4b4 fix CVE-2022-29824 2022-05-09 09:51:59 +08:00
fuanan
dd365e186a fix CVE-2022-23308 2022-03-09 11:54:11 +08:00
fuanan
3270cc329a fix valgrind errors in xmlParseBalancedChunkMemoryRecover 2022-02-26 16:51:43 +08:00
fuanan
4b9d60a380 use upstream patch refix heap-use-after-free in xmlAddNextSibling and xmlAddChild 2022-02-12 11:16:28 +08:00
panxiaohe
0e9039296a backport upstream patches 2021-12-02 14:41:13 +08:00
Wentao Fan
16413ab2cb revert commit 382544
Signed-off-by: Wentao Fan <fanwentao@huawei.com>
2021-11-27 15:53:43 +08:00
panxiaohe
a3d08d8657 fix issues about SEGV, memleak, overflow, etc. 2021-11-11 20:19:02 +08:00
panxiaohe
ed681a2b71 Fix heap-use-after-free in xmlAddNextSibling and xmlAddChild 2021-11-11 17:12:29 +08:00
panxiaohe
579dae2d55 fix memleaks in xmlXIncludeProcessFlags 2021-11-09 16:59:12 +08:00
huangduirong
deb136681a fix null deref in xmlSchemaGetComponentTargetNs
(cherry picked from commit cea8343440f6d8e76a281c4bf2818a1fcd9a5231)
2021-10-30 16:06:41 +08:00
panxiaohe
e59aafaf99 fix fuzz issues 2021-10-23 17:13:09 +08:00
panxiaohe
382544178f fix fuzz issues 2021-10-21 19:30:40 +08:00
guoxiaoqi
27bfa52c4c fix CVE-2021-3541 2021-06-02 11:06:48 +08:00
zou_lin77
5329b9f9e5 add patches from upstream 2021-05-29 17:41:53 +08:00
guoxiaoqi
0e25679957 fix CVE-2021-3517 and CVE-2021-3518 2021-05-28 11:40:32 +08:00
yangkang
ef0a5f66fa fix CVE-2021-3537 2021-05-27 16:40:43 +08:00
Liquor
ba77c3bc4d fix problems detected by oss-fuzz test 2021-03-02 19:48:37 +08:00
Liquor
eefe0dc92e fix problems detected by oss-fuzz test 2020-11-12 19:04:00 +08:00
yang_zhuang_zhuang
6af5d9ef65 revert Don-t-try-to-handle-namespaces-when-building-HTML-do.patch 2020-11-12 11:54:43 +08:00
yang_zhuang_zhuang
c7788837ef Fixed some issues found in fuzzing testcases 2020-11-12 11:52:00 +08:00
panxiaohe
9b0a7bb759 add libxml2-help requires 2020-11-06 16:02:35 +08:00
yang_zhuang_zhuang
ad2a15576c Fix CVE-2020-24977 2020-10-15 16:11:48 +08:00
zou_lin77
c240dacc90 Fix more quadratic runtime issues in HTML push parse
Fix reset HTML parser input before reporting error
2020-08-28 19:55:54 +08:00
liquor
6936b35066 Limit regexp nesting depth and Fix exponential runtime in xmlFARecurseDeterminism 2020-08-12 19:30:00 +08:00
liquor
00ef2eae10 Fix integer overflow in xmlFAParseQuantExact 2020-08-12 16:20:36 +08:00
Yangyang Shen
e984b33634 Fix use after free with validating reader 2020-07-30 17:32:07 +08:00
wangchen2020
b260a3e184 Sync some patches from community 2020-06-24 11:26:04 +08:00
chengquan
bb231caccf upgrade software to v2.9.10 2020-05-11 15:09:02 +08:00
wsp1991
ebcc4287e9 Sync some patches from community 2020-03-17 21:03:10 +08:00
dogsheng
7225a592c9 Package init 2019-12-25 17:13:34 +08:00