Package: guix;
Reported by: Marius Bakke <marius <at> gnu.org>
Date: Sun, 23 May 2021 15:16:01 UTC
Severity: normal
Tags: security
Done: Leo Famulari <leo <at> famulari.name>
Bug is archived. No further changes may be made.
View this message in rfc822 format
From: help-debbugs <at> gnu.org (GNU bug Tracking System) To: Marius Bakke <marius <at> gnu.org> Subject: bug#48612: closed (Re: bug#48612: Expat "billion laughs attack" vulnerability (CVE-2013-0340)) Date: Thu, 03 Jun 2021 03:17:02 +0000
[Message part 1 (text/plain, inline)]
[Message part 2 (message/rfc822, inline)]
From: Leo Famulari <leo <at> famulari.name> To: Marius Bakke <marius <at> gnu.org> Cc: 48612-done <at> debbugs.gnu.org Subject: Re: bug#48612: Expat "billion laughs attack" vulnerability (CVE-2013-0340) Date: Wed, 2 Jun 2021 23:16:29 -0400[Message part 3 (text/plain, inline)][signature.asc (application/pgp-signature, inline)]
[Message part 5 (message/rfc822, inline)]
From: Marius Bakke <marius <at> gnu.org> To: bug-guix <at> gnu.org Subject: Expat "billion laughs attack" vulnerability (CVE-2013-0340) Date: Sun, 23 May 2021 17:15:11 +0200[Message part 6 (text/plain, inline)][0001-gnu-expat-Replace-with-2.4.0-fixes-CVE-2013-0340.patch (text/x-patch, attachment)][signature.asc (application/pgp-signature, inline)]
GNU bug tracking system
Copyright (C) 1999 Darren O. Benham,
1997,2003 nCipher Corporation Ltd,
1994-97 Ian Jackson.