Mass rebuild report for May 11 2016
by Erik van Pienbroek
This is a report for the 20160511 mass rebuild of all Fedora MinGW
packages against Fedora Rawhide and a list of all the changes which
have been applied since the previous mass rebuild.
During this mass rebuild the following toolchain was used:
* mingw-w64 v5.0rc2
* binutils 2.26
* gcc 6.1.0
Statistics about current mass rebuild:
--------------------------------------
Timestamp of mass rebuild: 20160511
Total packages: 224
Number of failed packages: 7
Number of succeeded packages: 217
Number of added packages since previous mass rebuild: 6
Time needed to perform mass rebuild: 10 hours, 59 minutes, 23 seconds
Statistics about previous mass rebuild:
---------------------------------------
Timestamp of previous mass rebuild: 20150130
Total packages: 218
Number of failed packages: 4
Number of succeeded packages: 214
===============================================================================
The following packages were added since the previous rebuild:
mingw-jxrlib
mingw-libepoxy
mingw-nspr
mingw-openjpeg2
mingw-SDL2_image
mingw-SDL2_mixer
===============================================================================
The following packages FAILED to rebuild:
mingw-clucene-2.3.3.4-14
Package owner: greghellings
Time to build: 1 minute, 16 seconds
Build logs: http://build1.vanpienbroek.nl/fedora-mingw-rebuild/20160511/mingw-clucene...
mingw-cximage-600-14
** Package failed to build while it succeeded during the previous mass rebuild **
Package owner: elmarco
Time to build: 45 seconds
Build logs: http://build1.vanpienbroek.nl/fedora-mingw-rebuild/20160511/mingw-cximage...
mingw-LibRaw-0.17.1-2
** Package failed to build while it succeeded during the previous mass rebuild **
Package owner: smani
Time to build: 52 seconds
Build logs: http://build1.vanpienbroek.nl/fedora-mingw-rebuild/20160511/mingw-LibRaw-...
mingw-llvm-3.0-11
** Package failed to build while it succeeded during the previous mass rebuild **
Package owner: brouhaha
Time to build: 4 minutes, 31 seconds
Build logs: http://build1.vanpienbroek.nl/fedora-mingw-rebuild/20160511/mingw-llvm-3....
mingw-OpenEXR-2.2.0-3
** Package failed to build while it succeeded during the previous mass rebuild **
Package owner: smani
Time to build: 1 minute, 7 seconds
Build logs: http://build1.vanpienbroek.nl/fedora-mingw-rebuild/20160511/mingw-OpenEXR...
mingw-qt5-qtwebkit-5.5.1-3
** Package failed to build while it succeeded during the previous mass rebuild **
Package owner: epienbro
Time to build: 15 minutes, 3 seconds
Build logs: http://build1.vanpienbroek.nl/fedora-mingw-rebuild/20160511/mingw-qt5-qtw...
mingw-wine-gecko-2.44-1
** Package failed to build while it succeeded during the previous mass rebuild **
Package owner: awjb
Time to build: 7 minutes, 51 seconds
Build logs: http://build1.vanpienbroek.nl/fedora-mingw-rebuild/20160511/mingw-wine-ge...
===============================================================================
The following packages were rebuilt successfully:
mingw-admesh-0.98.2-3
Time to build: 29 seconds
mingw-adwaita-icon-theme-3.20-1
Time to build: 5 minutes, 20 seconds
mingw-angleproject-0-0.15.git.30d6c2.20141113
Time to build: 2 minutes, 19 seconds
mingw-antlr-2.7.7-15
Time to build: 53 seconds
mingw-atk-2.20.0-1
Time to build: 1 minute, 53 seconds
mingw-atkmm-2.24.2-2
Time to build: 46 seconds
mingw-binutils-2.26-1
Time to build: 3 minutes, 31 seconds
mingw-boost-1.60.0-1
Time to build: 14 minutes, 12 seconds
mingw-bzip2-1.0.6-7
Time to build: 39 seconds
mingw-cairo-1.14.6-1
Time to build: 1 minute, 52 seconds
mingw-cairomm-1.12.0-2
Time to build: 45 seconds
mingw-c-ares-1.11.0-1
Time to build: 3 minutes, 51 seconds
mingw-celt051-0.5.1.3-15
Time to build: 41 seconds
mingw-colord-1.2.9-3
Time to build: 1 minute, 20 seconds
mingw-colord-gtk-0.1.26-3
Time to build: 1 minute,
mingw-colorhug-client-0.2.6-3
Time to build: 1 minute, 6 seconds
mingw-cppunit-1.12.1-15
Time to build: 30 seconds
mingw-crossreport-201406-3
Time to build: 45 seconds
mingw-crt-5.0-0.1.rc2
Time to build: 1 minute, 54 seconds
mingw-curl-7.47.0-1
Time to build: 3 minutes, 41 seconds
mingw-cxxtest-3.10.1-15
Time to build: 16 seconds
mingw-dbus-1.8.16-3
Time to build: 1 minute, 12 seconds
mingw-dbus-glib-0.104-3
Time to build: 59 seconds
mingw-dirac-1.0.2-14
Time to build: 41 seconds
mingw-dlfcn-0-0.19.r11
Time to build: 25 seconds
mingw-eigen3-3.2.8-1
Time to build: 17 minutes, 3 seconds
mingw-enchant-1.6.0-12
Time to build: 45 seconds
mingw-expat-2.1.0-8
Time to build: 32 seconds
mingw-fftw-3.3.4-4
Time to build: 5 minutes, 52 seconds
mingw-filesystem-101-1
Time to build: 16 seconds
mingw-flac-1.3.1-3
Time to build: 1 minute, 28 seconds
mingw-fontconfig-2.11.95-1
Time to build: 52 seconds
mingw-freeglut-2.8.1-5
Time to build: 43 seconds
mingw-freeimage-3.17.0-3
Time to build: 54 seconds
mingw-freetype-2.6.3-1
Time to build: 42 seconds
mingw-ftplib-4.0-2
Time to build: 27 seconds
mingw-gcc-6.1.0-1
Time to build: 12 minutes, 22 seconds
mingw-GConf2-3.2.6-6
Time to build: 1 minute, 29 seconds
mingw-gdb-7.8.1-3
Time to build: 2 minutes, 54 seconds
mingw-gdbm-1.11-3
Time to build: 51 seconds
mingw-gdk-pixbuf-2.32.3-3
Time to build: 1 minute, 14 seconds
mingw-gettext-0.19.7-1
Time to build: 3 minutes, 46 seconds
mingw-giflib-5.1.4-1
Time to build: 32 seconds
mingw-glew-1.13.0-3
Time to build: 1 minute,
mingw-glib2-2.48.1-1
Time to build: 4 minutes, 7 seconds
mingw-glibmm24-2.48.1-1
Time to build: 2 minutes, 40 seconds
mingw-glib-networking-2.48.2-1
Time to build: 49 seconds
mingw-gmp-6.0.0-4
Time to build: 1 minute, 9 seconds
mingw-gnutls-3.4.9-1
Time to build: 2 minutes, 55 seconds
mingw-goocanvas2-2.0.2-3
Time to build: 1 minute, 3 seconds
mingw-gsl-1.16-4
Time to build: 1 minute, 50 seconds
mingw-gsm-1.0.13-3
Time to build: 25 seconds
mingw-gstreamer-0.10.36-9
Time to build: 1 minute, 40 seconds
mingw-gstreamer1-1.6.0-2
Time to build: 1 minute, 19 seconds
mingw-gstreamer1-plugins-bad-free-1.6.0-2
Time to build: 2 minutes, 38 seconds
mingw-gstreamer1-plugins-base-1.6.0-2
Time to build: 1 minute, 43 seconds
mingw-gstreamer1-plugins-good-1.6.0-2
Time to build: 1 minute, 47 seconds
mingw-gstreamer-plugins-bad-free-0.10.23-13
Time to build: 2 minutes, 13 seconds
mingw-gstreamer-plugins-base-0.10.36-8
Time to build: 1 minute, 43 seconds
mingw-gstreamer-plugins-good-0.10.31-13
Time to build: 1 minute, 51 seconds
mingw-gtk2-2.24.30-1
Time to build: 5 minutes, 2 seconds
mingw-gtk3-3.20.4-1
Time to build: 5 minutes, 5 seconds
mingw-gtkglext-1.2.0-14
Time to build: 1 minute, 31 seconds
mingw-gtkhtml3-4.6.6-4
Time to build: 2 minutes, 15 seconds
mingw-gtkmm24-2.24.4-5
Time to build: 2 minutes, 27 seconds
mingw-gtkmm30-3.20.1-1
Time to build: 3 minutes, 4 seconds
mingw-gtksourceview3-3.20.3-1
Time to build: 1 minute, 22 seconds
mingw-gtkspell3-3.0.8-1
Time to build: 1 minute, 24 seconds
mingw-gtkspellmm30-3.0.4-2
Time to build: 1 minute, 6 seconds
mingw-gtk-vnc-0.5.4-5
Time to build: 1 minute, 22 seconds
mingw-harfbuzz-1.2.7-1
Time to build: 1 minute, 16 seconds
mingw-headers-5.0-0.1.rc2
Time to build: 41 seconds
mingw-hicolor-icon-theme-0.15-3
Time to build: 18 seconds
mingw-hidapi-0.8.0-0.2.d17db57
Time to build: 42 seconds
mingw-hunspell-1.3.2-13
Time to build: 51 seconds
mingw-icu-50.1.2-6
Time to build: 2 minutes, 15 seconds
mingw-id3lib-3.8.3-36
Time to build: 1 minute, 8 seconds
mingw-ilmbase-2.2.0-3
Time to build: 52 seconds
mingw-jasper-1.900.1-28
Time to build: 50 seconds
mingw-jxrlib-1.1-2
Time to build: 34 seconds
mingw-lcms-1.19-8
Time to build: 47 seconds
mingw-lcms2-2.7-3
Time to build: 49 seconds
mingw-leptonica-1.73-3
Time to build: 2 minutes, 2 seconds
mingw-libarchive-3.1.2-5
Time to build: 1 minute, 53 seconds
mingw-libcroco-0.6.11-1
Time to build: 45 seconds
mingw-libepoxy-1.3.1-3
Time to build: 1 minute, 21 seconds
mingw-libffi-3.0.13-7
Time to build: 31 seconds
mingw-libgcrypt-1.6.3-4
Time to build: 1 minute, 38 seconds
mingw-libgeotiff-1.4.0-6
Time to build: 49 seconds
mingw-libglade2-2.6.4-19
Time to build: 1 minute, 13 seconds
mingw-libglademm24-2.6.7-21
Time to build: 54 seconds
mingw-libgnurx-2.5.1-18
Time to build: 36 seconds
mingw-libgovirt-0.3.2-3
Time to build: 52 seconds
mingw-libgpg-error-1.22-1
Time to build: 58 seconds
mingw-libgsf-1.14.34-2
Time to build: 1 minute, 8 seconds
mingw-libgusb-0.2.4-3
Time to build: 48 seconds
mingw-libid3tag-0.15.1b-20
Time to build: 33 seconds
mingw-libIDL-0.8.14-5
Time to build: 52 seconds
mingw-libidn-1.28-5
Time to build: 59 seconds
mingw-libjpeg-turbo-1.4.2-1
Time to build: 50 seconds
mingw-libltdl-2.4.6-2
Time to build: 37 seconds
mingw-libmicrohttpd-0.9.46-2
Time to build: 56 seconds
mingw-libmng-2.0.3-3
Time to build: 47 seconds
mingw-libogg-1.3.0-8
Time to build: 33 seconds
mingw-liboil-0.3.16-13
Time to build: 41 seconds
mingw-libosinfo-0.2.8-4
Time to build: 52 seconds
mingw-libpng-1.6.21-1
Time to build: 40 seconds
mingw-librsvg2-2.40.15-1
Time to build: 1 minute, 16 seconds
mingw-libsigc++20-2.8.0-1
Time to build: 36 seconds
mingw-libsigsegv-2.6-12
Time to build: 27 seconds
mingw-libsoup-2.52.2-3
Time to build: 1 minute, 15 seconds
mingw-libsqlite3x-20071018-22
Time to build: 45 seconds
mingw-libssh2-1.4.3-5
Time to build: 47 seconds
mingw-libtasn1-4.5-2
Time to build: 41 seconds
mingw-libtheora-1.1.1-4
Time to build: 49 seconds
mingw-libtiff-4.0.3-8
Time to build: 1 minute, 13 seconds
mingw-libusbx-1.0.19-3
Time to build: 38 seconds
mingw-libvirt-1.3.1-2
Time to build: 4 minutes, 58 seconds
mingw-libvirt-glib-0.2.3-2
Time to build: 1 minute, 38 seconds
mingw-libvorbis-1.3.4-4
Time to build: 34 seconds
mingw-libwebp-0.5.0-2
Time to build: 48 seconds
mingw-libxml++-2.40.1-2
Time to build: 43 seconds
mingw-libxml2-2.9.3-1
Time to build: 1 minute, 59 seconds
mingw-libxslt-1.1.28-6
Time to build: 54 seconds
mingw-libzip-1.1.2-1
Time to build: 40 seconds
mingw-log4c-1.2.4-5
Time to build: 40 seconds
mingw-mpfr-3.1.4-1
Time to build: 49 seconds
mingw-nettle-3.2-1
Time to build: 58 seconds
mingw-nsis-2.50-1
Time to build: 1 minute, 43 seconds
mingw-nsiswrapper-10-7
Time to build: 15 seconds
mingw-nspr-4.12-1
Time to build: 1 minute, 26 seconds
mingw-openjpeg-1.5.2-5
Time to build: 51 seconds
mingw-openjpeg2-2.1.0-2
Time to build: 42 seconds
mingw-openssl-1.0.2h-1
Time to build: 6 minutes, 11 seconds
mingw-opus-1.1.2-2
Time to build: 38 seconds
mingw-opusfile-0.7-2
Time to build: 32 seconds
mingw-orc-0.4.24-2
Time to build: 43 seconds
mingw-p11-kit-0.23.2-1
Time to build: 1 minute, 6 seconds
mingw-pango-1.40.1-1
Time to build: 1 minute, 17 seconds
mingw-pangomm-2.40.0-1
Time to build: 1 minute, 4 seconds
mingw-pcre-8.38-1
Time to build: 57 seconds
mingw-pdcurses-3.4-18
Time to build: 33 seconds
mingw-physfs-2.0.3-7
Time to build: 44 seconds
mingw-pixman-0.34.0-1
Time to build: 51 seconds
mingw-pkg-config-0.28-6
Time to build: 23 seconds
mingw-plotmm-0.1.2-21
Time to build: 1 minute, 26 seconds
mingw-polyclipping-6.2.0-3
Time to build: 37 seconds
mingw-poppler-0.43.0-1
Time to build: 5 minutes, 12 seconds
mingw-portablexdr-4.9.1-14
Time to build: 31 seconds
mingw-postgresql-9.5.2-1
Time to build: 6 minutes, 15 seconds
mingw-proj-4.9.1-3
Time to build: 41 seconds
mingw-qpid-cpp-0.14-12
Time to build: 9 minutes, 21 seconds
mingw-qt-4.8.7-1
** Package built successfully while it failed during the previous mass rebuild **
Time to build: 1 hour, 34 minutes, 31 seconds
mingw-qt5-qt3d-5.6.0-2
Time to build: 6 minutes, 28 seconds
mingw-qt5-qtactiveqt-5.6.0-1
Time to build: 1 minute, 35 seconds
mingw-qt5-qtbase-5.6.0-4
Time to build: 26 minutes, 40 seconds
mingw-qt5-qtconnectivity-5.4.1-1
Time to build: 1 minute, 18 seconds
mingw-qt5-qtdeclarative-5.6.0-1
Time to build: 13 minutes, 57 seconds
mingw-qt5-qtenginio-5.4.1-1
Time to build: 1 minute, 3 seconds
mingw-qt5-qtfeedback-5.0.0-0.10.git20140527.dea0da72
Time to build: 1 minute, 9 seconds
mingw-qt5-qtgraphicaleffects-5.6.0-1
Time to build: 51 seconds
mingw-qt5-qtimageformats-5.6.0-1
Time to build: 54 seconds
mingw-qt5-qtjsbackend-5.1.1-9
** Package built successfully while it failed during the previous mass rebuild **
Time to build: 2 minutes, 21 seconds
mingw-qt5-qtlocation-5.6.0-1
Time to build: 2 minutes, 58 seconds
mingw-qt5-qtmultimedia-5.6.0-1
Time to build: 2 minutes, 52 seconds
mingw-qt5-qtpim-5.0.0-0.10.git20160507.eb8899
Time to build: 2 minutes, 27 seconds
mingw-qt5-qtquick1-5.5.1-3
Time to build: 3 minutes, 27 seconds
mingw-qt5-qtquickcontrols-5.6.0-1
Time to build: 2 minutes, 1 second
mingw-qt5-qtscript-5.6.0-1
Time to build: 3 minutes, 20 seconds
mingw-qt5-qtsensors-5.6.0-1
Time to build: 1 minute, 20 seconds
mingw-qt5-qtserialport-5.4.1-1
Time to build: 47 seconds
mingw-qt5-qtsvg-5.6.0-1
Time to build: 1 minute, 4 seconds
mingw-qt5-qtsystems-5.0.0-0.18.git20160413.236b6b
Time to build: 1 minute, 28 seconds
mingw-qt5-qttools-5.6.0-2
Time to build: 7 minutes, 38 seconds
mingw-qt5-qttranslations-5.6.0-1
Time to build: 48 seconds
mingw-qt5-qtwebchannel-5.4.1-1
Time to build: 53 seconds
mingw-qt5-qtwebsockets-5.4.1-1
Time to build: 58 seconds
mingw-qt5-qtwinextras-5.6.0-1
Time to build: 1 minute, 13 seconds
mingw-qt5-qtxmlpatterns-5.6.0-1
Time to build: 3 minutes, 26 seconds
mingw-qwt-6.1.2-4
Time to build: 5 minutes, 11 seconds
mingw-readline-6.2-7
Time to build: 42 seconds
mingw-rest-0.7.92-3
Time to build: 1 minute, 20 seconds
mingw-sane-backends-1.0.25-2
Time to build: 49 seconds
mingw-SDL-1.2.15-7
Time to build: 52 seconds
mingw-SDL2-2.0.3-8
** Package built successfully while it failed during the previous mass rebuild **
Time to build: 1 minute, 19 seconds
mingw-SDL2_image-2.0.0-7
Time to build: 43 seconds
mingw-SDL2_mixer-2.0.0-5
Time to build: 36 seconds
mingw-SDL_image-1.2.12-13
Time to build: 37 seconds
mingw-SDL_mixer-1.2.12-7
Time to build: 32 seconds
mingw-shapelib-1.3.0-7
Time to build: 1 minute, 1 second
mingw-sigar-1.6.5-0.15.git58097d9
Time to build: 25 seconds
mingw-speex-1.2-0.19.rc1
Time to build: 38 seconds
mingw-spice-gtk-0.31-1
Time to build: 3 minutes, 49 seconds
mingw-spice-protocol-0.12.11-1
Time to build: 19 seconds
mingw-sqlite-3.12.2.0-1
Time to build: 2 minutes, 5 seconds
mingw-srvany-1.0-17.20150115gitfd659e77
Time to build: 26 seconds
mingw-sword-1.7.4-3
Time to build: 1 minute, 17 seconds
mingw-taglib-1.11-0.2.beta2
Time to build: 1 minute, 13 seconds
mingw-tcl-8.6.4-3
Time to build: 2 minutes, 34 seconds
mingw-termcap-1.3.1-19
Time to build: 28 seconds
mingw-tesseract-3.04.01-1
Time to build: 4 minutes, 34 seconds
mingw-tk-8.6.1-3
Time to build: 31 seconds
mingw-usbredir-0.7.1-2
Time to build: 32 seconds
mingw-w64-tools-3.1.999-0.8.trunk.git430863.20140530
Time to build: 28 seconds
mingw-wavpack-4.80.0-1
Time to build: 35 seconds
mingw-webkitgtk-2.4.11-1
Time to build: 1 hour, 31 minutes, 59 seconds
mingw-webkitgtk3-2.4.11-1
Time to build: 56 minutes, 47 seconds
mingw-win-iconv-0.0.6-5
Time to build: 51 seconds
mingw-winpthreads-5.0-0.1.rc2
Time to build: 45 seconds
mingw-winstorecompat-4.0.2-3
Time to build: 39 seconds
mingw-wpcap-4.1.final3-3
Time to build: 34 seconds
mingw-wxWidgets-2.8.12-20
Time to build: 5 minutes, 34 seconds
mingw-xerces-c-3.1.2-4
Time to build: 2 minutes, 57 seconds
mingw-xz-5.2.2-2
Time to build: 43 seconds
mingw-zfstream-20041202-20
Time to build: 39 seconds
mingw-zlib-1.2.8-5
Time to build: 38 seconds
wine-mono-4.6.2-1
Time to build: 15 minutes, 4 seconds
===============================================================================
Mass rebuild script for the Fedora MinGW packages written and
maintained by Erik van Pienbroek (epienbro(a)fedoraproject.org)
7 years, 11 months
wine-gecko
by Michael Cronenworth
Version 2.47 is currently in beta and wine-gecko needs another round of backports
for successful building.
A Fedora 23 build fails due to missing D3D11 definitions. At least
"CD3D11_SHADER_RESOURCE_VIEW_DESC" is required.
Erik, could you work on getting the backport in Fedora 22/23? Let me know if you
need any more details.
Thanks,
Michael
7 years, 11 months
[Bug 1281930] New: libxml2: Out-of-bounds heap read on 0xff char in xml declaration
by Red Hat Bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1281930
Bug ID: 1281930
Summary: libxml2: Out-of-bounds heap read on 0xff char in xml
declaration
Product: Security Response
Component: vulnerability
Keywords: Security
Severity: low
Priority: low
Assignee: security-response-team(a)redhat.com
Reporter: amaris(a)redhat.com
CC: athmanem(a)gmail.com, c.david86(a)gmail.com,
erik-fedora(a)vanpienbroek.nl,
fedora-mingw(a)lists.fedoraproject.org,
ktietz(a)redhat.com, lfarkas(a)lfarkas.org,
ohudlick(a)redhat.com, rjones(a)redhat.com,
veillard(a)redhat.com
An out-of-bounds heap read in xmlParseXMLDecl happens when a file containing
unfinished xml declaration, e.g. <?xml versionencoding="ISO88598", is followed
by 0xff byte.
Upstream bug:
https://bugzilla.gnome.org/show_bug.cgi?id=751631
Upstream patch:
https://git.gnome.org/browse/libxml2/commit/?id=709a952110e98621c9b78c4f2...
--
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=RtnuYLKA2T&a=cc_unsubscribe
7 years, 11 months
[Bug 1276297] New: CVE-2015-7942 libxml2: heap-based buffer overflow in xmlParseConditionalSections()
by Red Hat Bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1276297
Bug ID: 1276297
Summary: CVE-2015-7942 libxml2: heap-based buffer overflow in
xmlParseConditionalSections()
Product: Security Response
Component: vulnerability
Keywords: Security
Severity: medium
Priority: medium
Assignee: security-response-team(a)redhat.com
Reporter: mprpic(a)redhat.com
CC: athmanem(a)gmail.com, c.david86(a)gmail.com,
drizt(a)land.ru, erik-fedora(a)vanpienbroek.nl,
fedora-mingw(a)lists.fedoraproject.org,
ktietz(a)redhat.com, lfarkas(a)lfarkas.org,
ohudlick(a)redhat.com, rjones(a)redhat.com,
veillard(a)redhat.com
A heap-based buffer overflow flaw was found in the way libxml2 parsed certain
crafted XML input. A remote attacker could provide a specially-crafted XML file
that, when opened in an application linked against libxml2, would cause the
application to crash.
Upstream patch:
https://git.gnome.org/browse/libxml2/commit/?id=9b8512337d14c8ddf662fcb98...
Upstream bug:
https://bugzilla.gnome.org/show_bug.cgi?id=756456
CVE assignment:
http://seclists.org/oss-sec/2015/q4/130
--
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=JWm7G50nVi&a=cc_unsubscribe
7 years, 11 months
[Bug 1274222] New: libxml2: Out-of-bounds memory access
by Red Hat Bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1274222
Bug ID: 1274222
Summary: libxml2: Out-of-bounds memory access
Product: Security Response
Component: vulnerability
Keywords: Security
Severity: low
Priority: low
Assignee: security-response-team(a)redhat.com
Reporter: amaris(a)redhat.com
CC: athmanem(a)gmail.com, c.david86(a)gmail.com,
drizt(a)land.ru, erik-fedora(a)vanpienbroek.nl,
fedora-mingw(a)lists.fedoraproject.org,
ktietz(a)redhat.com, lfarkas(a)lfarkas.org,
ohudlick(a)redhat.com, rjones(a)redhat.com,
veillard(a)redhat.com, weli(a)redhat.com
An out-of-bounds read vulnerability was found in libxml2 with crafted xml
input.
Report can be found here:
https://bugzilla.gnome.org/show_bug.cgi?id=744980#c1
Upstream patches:
https://git.gnome.org/browse/libxml2/commit/?id=a7dfab7411cbf545f359dd315...
https://git.gnome.org/browse/libxml2/commit/?id=9b8512337d14c8ddf662fcb98...
CVE request:
http://seclists.org/oss-sec/2015/q4/127
--
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=DBMrfilEPi&a=cc_unsubscribe
7 years, 11 months
[Bug 1213957] New: libxml2: out-of-bounds memory access when parsing an unclosed HTML comment
by Red Hat Bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1213957
Bug ID: 1213957
Summary: libxml2: out-of-bounds memory access when parsing an
unclosed HTML comment
Product: Security Response
Component: vulnerability
Keywords: Security
Severity: medium
Priority: medium
Assignee: security-response-team(a)redhat.com
Reporter: vkaigoro(a)redhat.com
CC: athmanem(a)gmail.com, c.david86(a)gmail.com,
drizt(a)land.ru, erik-fedora(a)vanpienbroek.nl,
fedora-mingw(a)lists.fedoraproject.org,
ktietz(a)redhat.com, lfarkas(a)lfarkas.org,
ohudlick(a)redhat.com, rjones(a)redhat.com,
veillard(a)redhat.com
Following issue was reported in libxml2
(http://seclists.org/oss-sec/2015/q2/214):
"""
This is an out-of-bounds memory access in libxml2. By entering a unclosed
html comment such as <!-- the libxml2 parser didn't stop parsing at the end
of the buffer, causing random memory to be included in the parsed comment
that was returned to ruby. In Shopify, this caused ruby objects from
previous http requests to be disclosed in the rendered page.
Link to the issue in libxml2's bugtracker:
https://bugzilla.gnome.org/show_bug.cgi?id=746048
A patched version of nokogiri (which uses a embedded libxml2) is available
here:
https://github.com/Shopify/nokogiri/compare/1b1fcad8bd64ab70256666c38d2c9...
This bug is still not patched upstream, but both libxml2 and nokogiri
developers are aware of the issue.
"""
No upstream patches exist at the time of creating this Bugzilla.
--
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=zRmasjF3dU&a=cc_unsubscribe
7 years, 11 months
[Bug 1335683] New: [Patch] Fix static libraries
by Red Hat Bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1335683
Bug ID: 1335683
Summary: [Patch] Fix static libraries
Product: Fedora
Version: rawhide
Component: mingw-cairo
Assignee: rjones(a)redhat.com
Reporter: manisandro(a)gmail.com
QA Contact: extras-qa(a)fedoraproject.org
CC: erik-fedora(a)vanpienbroek.nl,
fedora-mingw(a)lists.fedoraproject.org,
marcandre.lureau(a)redhat.com, rjones(a)redhat.com,
t.sailer(a)alumni.ethz.ch
Created attachment 1156933
--> https://bugzilla.redhat.com/attachment.cgi?id=1156933&action=edit
Patch: fix static libraries
The attached patch fixes the static libraries. These are currently broken
because they end up containing a DllMain.
A second patch fixes a current FTBFS issue due to "aclocal-1.14: command not
found" - running autoreconf fixes this.
--
You are receiving this mail because:
You are on the CC list for the bug.
7 years, 11 months