Packages
Get Gentoo!
gentoo.org sites
gentoo.org
Wiki
Bugs
Forums
Packages
Planet
Archives
Sources
Infra Status
Home
Packages
Maintainers
USE flags
Architectures
About
Gentoo Developer
Sebastian Pipping
Include Projects
Packages
60
Stabilization
0
Outdated
5
Pull requests
2
Bugs
11
Security
9
Changelog
Security Bug Reports
<dev-libs/uriparser-0.9.6: multiple vulnerabilities
830665 - Assigned to Gentoo Security
<media-gfx/optipng-0.7.8: out-of-bounds read
915342 - Assigned to Gentoo Security
<dev-libs/expat-2.6.0 quadratic runtime denial of service
923951 - Assigned to Gentoo Security
<dev-libs/expat-2.6.2: vulnerable to billion laughs attacks with isolated use of external parsers
926786 - Assigned to Gentoo Security
<dev-libs/uriparser-0.9.8: multiple vulnerabilities
931259 - Assigned to Sebastian Pipping
<dev-libs/expat-2.6.3: multiple vulnerabilities
938894 - Assigned to Gentoo Security
<dev-libs/expat-2.6.4 - NULL pointer dereference through function XML_ResumeParser
942969 - Assigned to Gentoo Security
<dev-libs/expat-2.7.0 can be crashed through long linear chains of entities
951316 - Assigned to Gentoo Security
<dev-libs/expat-2.7.3: denial of service (large use of heap from small parse input)
962963 - Assigned to Gentoo Security
Contact Information
Please file new vulnerability reports on
Gentoo Bugzilla
and assign them to the Gentoo Security product and Vulnerabilities component.