Re: [oss-security] 5 security issues disclosed in libxml2

2025-07-11 Thread Alan Coopersmith
On 6/16/25 15:12, Alan Coopersmith wrote: BTW, users of libxml2 may also be using its sibling project, libxslt, which currently has no active maintainer, but has three unfixed security issues reported against it according to https://gitlab.gnome.org/Teams/Releng/security/-/wikis/2025#libxml2-and-

[oss-security] 5 security issues disclosed in libxml2

2025-06-16 Thread Alan Coopersmith
As discussed in https://gitlab.gnome.org/GNOME/libxml2/-/issues/913 the security policy of libxml2 has been changed to disclose vulnerabilities before fixes are available so that people other than the maintainer can contribute to fixing security issues in this library. As part of this, the follow