apr-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From rj...@apache.org
Subject svn commit: r1006015 - /apr/apr-util/branches/0.9.x/CHANGES
Date Fri, 08 Oct 2010 21:01:23 GMT
Author: rjung
Date: Fri Oct  8 21:01:23 2010
New Revision: 1006015

URL: http://svn.apache.org/viewvc?rev=1006015&view=rev
Log:
Update CHANGES.

Modified:
    apr/apr-util/branches/0.9.x/CHANGES

Modified: apr/apr-util/branches/0.9.x/CHANGES
URL: http://svn.apache.org/viewvc/apr/apr-util/branches/0.9.x/CHANGES?rev=1006015&r1=1006014&r2=1006015&view=diff
==============================================================================
--- apr/apr-util/branches/0.9.x/CHANGES [utf-8] (original)
+++ apr/apr-util/branches/0.9.x/CHANGES [utf-8] Fri Oct  8 21:01:23 2010
@@ -5,10 +5,18 @@ Changes with APR-util 0.9.18
      Fix a denial of service attack against apr_brigade_split_line().
      [Stefan Fritsch]
 
+  *) SECURITY: CVE-2009-3560, CVE-2009-3720 (cve.mitre.org)
+     Fix two buffer over-read flaws in the bundled copy of expat which
+     could cause applications to crash while parsing specially-crafted
+     XML documents.  [Joe Orton, Rainer Jung]
+
   *) SECURITY: CVE-2009-2412 (cve.mitre.org)
      Fix overflow in rmm, where size alignment was taking place.
      [Matt Lewis <mattlewis@google.com>, Sander Striker]
 
+  *) Upgrade bundled copy of expat library to 1.95.7.
+     [Joe Orton, Rainer Jung]
+
   *) Make bundled expat compatible with libtool 2.x.
      This only affects the release process. [Rainer Jung]
 
@@ -18,6 +26,11 @@ Changes with APR-util 0.9.18
   *) Improve platform detection for bundled expat by updating
      config.guess and config.sub. [Rainer Jung]
 
+  *) Add support for Berkeley DB 4.6 to 5.1.  PR 49866, PR 49179.
+     [Bernhard Rosenkraenzer <br blankpage.ch>,
+      Arfrever Frehtes Taifersar Arahesis <arfrever.fta gmail.com>,
+      Rainer Jung]
+
 Changes with APR-util 0.9.17
 
   *) SECURITY: CVE-2009-1955 (cve.mitre.org)



Mime
View raw message