From: Gustavo Zacarias Date: Tue, 6 Mar 2012 12:10:43 +0000 (-0300) Subject: expat: add security patch for CVE-2009-3560 X-Git-Url: https://git.libre-soc.org/?a=commitdiff_plain;h=e482a430ec4f8507f5a5caf06b3e72f4c30edfea;p=buildroot.git expat: add security patch for CVE-2009-3560 Signed-off-by: Gustavo Zacarias Signed-off-by: Peter Korsgaard --- diff --git a/package/expat/expat-2.0.1-CVE-2009-3560.patch b/package/expat/expat-2.0.1-CVE-2009-3560.patch new file mode 100644 index 0000000000..7cadc47b07 --- /dev/null +++ b/package/expat/expat-2.0.1-CVE-2009-3560.patch @@ -0,0 +1,14 @@ +http://nvd.nist.gov/nvd.cfm?cvename=CVE-2009-3560 + +--- a/lib/xmlparse.c ++++ b/lib/xmlparse.c +@@ -3703,6 +3703,9 @@ doProlog(XML_Parser parser, + return XML_ERROR_UNCLOSED_TOKEN; + case XML_TOK_PARTIAL_CHAR: + return XML_ERROR_PARTIAL_CHAR; ++ case -XML_TOK_PROLOG_S: ++ tok = -tok; ++ break; + case XML_TOK_NONE: + #ifdef XML_DTD + /* for internal PE NOT referenced between declarations */