diff options
Diffstat (limited to 'expat/Changes')
-rw-r--r-- | expat/Changes | 4 |
1 files changed, 3 insertions, 1 deletions
diff --git a/expat/Changes b/expat/Changes index fc70198e..e6717105 100644 --- a/expat/Changes +++ b/expat/Changes @@ -6,7 +6,9 @@ Release 2.5.0 Tue October 25 2022 Security fixes: #616 #649 #650 CVE-2022-43680 -- Fix heap use-after-free after overeager destruction of a shared DTD in function - XML_ExternalEntityParserCreate in out-of-memory situations + XML_ExternalEntityParserCreate in out-of-memory situations. + Expected impact is denial of service or potentially + arbitrary code execution. Bug fixes: #612 #645 Fix curruption from undefined entities |