Page MenuHomePhabricator

depends: expat 2.2.7

Authored by Fabien on Apr 1 2020, 09:47.


Major changes in expat 2.2.7:

 - #186 #262 Fix extraction of namespace prefixes from XML names;
   XML names with multiple colons could end up in the
   wrong namespace, and take a high amount of RAM and CPU
   resources while processing, opening the door to use for
   denial-of-service attacks
 - #227 Autotools: Add --without-examples and --without-tests

Backport of core PR16270.

Test Plan

Run the Gitian builds.

Diff Detail

rABC Bitcoin ABC
Automatic diff as part of commit; lint not applicable.
Automatic diff as part of commit; unit tests not applicable.

Event Timeline

Fabien created this revision.Apr 1 2020, 09:47
Herald added a reviewer: Restricted Project. · View Herald TranscriptApr 1 2020, 09:47
teamcity edited the summary of this revision. (Show Details)Apr 1 2020, 09:47

[Bot Message]
One or more PR numbers were detected in the summary.
Links to those PRs have been inserted into the summary for reference.

Fabien planned changes to this revision.Apr 1 2020, 09:47

Pending gitian builds.

Fabien requested review of this revision.Apr 1 2020, 11:12
Fabien updated this revision to Diff 17347.Apr 1 2020, 11:52


deadalnix accepted this revision.Apr 1 2020, 16:37
This revision is now accepted and ready to land.Apr 1 2020, 16:37
This revision was automatically updated to reflect the committed changes.