Debian Patches
Status for expat/2.8.5-2
| Patch | Description | Author | Forwarded | Bugs | Origin | Last update |
|---|---|---|---|---|---|---|
| fix-expat-noconfig.patch | libexpat.so.X.Y.Z is installed in /lib/${DEB_HOST_MULTIARCH} instead of /usr/lib/${DEB_HOST_MULTIARCH}, thus the path of the shared library is not relative to the location of this cmake file (Closes: #995907) |
Andrius Merkys <merkys@debian.org> | not-needed | |||
| fix-expat-cmake.patch | fix path for INTERFACE_INCLUDE_DIRECTORIES | Matteo F. Vescovi <mfv@debian.org> | not-needed | |||
| CVE-2026-102633.patch | lib|tests: Replace assert with runtime overflow check in expat_realloc In expat_realloc, the size passed to realloc_fcn is calculated as sizeof(size_t) + EXPAT_MALLOC_PADDING + size. Previously, expat_realloc relied on an assertion: assert(SIZE_MAX - sizeof(size_t) - EXPAT_MALLOC_PADDING >= size); under the assumption that preceding accounting checks and parser invariants preclude reaching an overflow state in practice. However, in release builds compiled with NDEBUG, assertions are compiled out. Replace the assert with an explicit runtime check: if (size > SIZE_MAX - sizeof(size_t) - EXPAT_MALLOC_PADDING) { return NULL; } immediately preceding the addition, ensuring consistent defensive behavior across all build configurations. Also extend test_alloc_tracker_size_recorded in alloc_tests.c to exercise SIZE_MAX and SIZE_MAX / 2 with expat_realloc, verifying that the allocation fails and the recorded size remains unchanged. |
Filippo Tedeschi <filippotedeschi98@gmail.com> | no | 2026-09-24 |
All known versions for source package 'expat'
- 2.8.5-2 (sid)
- 2.8.4-2 (forky)
- 2.8.3-1~deb13u1 (trixie, trixie-security)
- 2.5.0-1+deb12u4 (bookworm-security)
- 2.5.0-1+deb12u2 (bookworm)
