xerces: security bump to version 3.1.4
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Thu, 30 Jun 2016 17:52:55 +0000 (14:52 -0300)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Thu, 30 Jun 2016 22:00:58 +0000 (00:00 +0200)
Fixes:
CVE-2016-4463 - XML Parser Crashes on Malformed DTD.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/xerces/xerces.hash
package/xerces/xerces.mk

index 639e6685345ca0aa65ad4f2f4ee7b109f5e2b500..c621f5cd562ec9dd09a7fa4841cad0f18bf425c9 100644 (file)
@@ -1,2 +1,2 @@
-# From http://www.apache.org/dist/xerces/c/3/sources/xerces-c-3.1.3.tar.xz.sha256
-sha256 d35ae442db333f73c7ef41b2ce2e33bc8aba8dbacf582af765eda26415d25c94 xerces-c-3.1.3.tar.xz
+# From http://www.apache.org/dist/xerces/c/3/sources/xerces-c-3.1.4.tar.xz.sha256
+sha256 9973cc79481803f8b6652c52faf5195d963f50d209d4f681ec97e2aa014b6241 xerces-c-3.1.4.tar.xz
index e7f57b3c8e728a2f1f7b335238b5fe113644e3ac..a25641fb45f3f80bde42b38667d75f339e980fce 100644 (file)
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-XERCES_VERSION = 3.1.3
+XERCES_VERSION = 3.1.4
 XERCES_SOURCE = xerces-c-$(XERCES_VERSION).tar.xz
 XERCES_SITE = http://archive.apache.org/dist/xerces/c/3/sources
 XERCES_LICENSE = Apache-2.0