Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bundles vulnerable copy of Expat - please update to 2.2.4 #5

Open
hartwork opened this issue Jun 18, 2017 · 4 comments
Open

Bundles vulnerable copy of Expat - please update to 2.2.4 #5

hartwork opened this issue Jun 18, 2017 · 4 comments

Comments

@hartwork
Copy link

hartwork commented Jun 18, 2017

Hi!

This repository bundles an outdated vulnerable copy of Expat 2.1.0. Please update your copy to version 2.2.1 with the latest security fixes. A change log with details is available at https://github.com/libexpat/libexpat/blob/master/expat/Changes . Thank you!

Best

 
Sebastian

@capr
Copy link
Member

capr commented Jun 18, 2017

Thanks for the heads up. I'll update this when I have a Mac available so I can rebuild the binaries on all platforms.

@hartwork hartwork changed the title Bundles vulnerable copy of Expat - please update to 2.2.1 Bundles vulnerable copy of Expat - please update to 2.2.4 Aug 20, 2017
@hartwork
Copy link
Author

Any news? Expat 2.2.4 is out by now.

@hartwork
Copy link
Author

Any news?

@capr
Copy link
Member

capr commented Oct 25, 2017

You could try to update the sources and re-run the build scripts and see what would happen. Maybe it would just compile without problems out-of-the box.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

No branches or pull requests

2 participants