Information on source package xerces-c

Available versions

ReleaseVersion
jessie3.1.1-5.1+deb8u6
stretch3.1.4+debian-2+deb9u3
stretch (security)3.1.4+debian-2+deb9u2
buster3.2.2+debian-1+deb10u2
bullseye3.2.3+debian-3+deb11u1
bookworm3.2.4+debian-1
trixie3.2.4+debian-1.3
sid3.2.4+debian-1.3

Open issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2018-1311vulnerable (no DSA, postponed)fixedfixedfixedfixedfixedfixedThe Apache Xerces-C 3.0.0 to 3.2.3 XML parser contains a use-after-fre ...

Open unimportant issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2012-0880vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableApache Xerces-C++ allows remote attackers to cause a denial of service ...

Resolved issues

BugDescription
CVE-2023-37536An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remo ...
CVE-2017-12627In Apache Xerces-C XML Parser library before 3.2.1, processing of exte ...
CVE-2016-4463Stack-based buffer overflow in Apache Xerces-C++ before 3.1.4 allows c ...
CVE-2016-2099Use-after-free vulnerability in validators/DTD/DTDScanner.cpp in Apach ...
CVE-2016-0729Multiple buffer overflows in (1) internal/XMLReader.cpp, (2) util/XMLU ...
CVE-2015-0252internal/XMLReader.cpp in Apache Xerces-C before 3.1.2 allows remote a ...
CVE-2009-1885Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Ap ...

Security announcements

DSA / DLADescription
ELA-1031-1xerces-c - security update
DLA-3704-1xerces-c - security update
DSA-4814-1xerces-c - security update
DLA-2498-1xerces-c - security update
ELA-330-1xerces-c - security update
DLA-1328-1xerces-c - security update
DSA-3610-1xerces-c - security update
DLA-535-1xerces-c - security update
DSA-3579-1xerces-c - security update
DLA-467-1xerces-c - security update
DSA-3493-1xerces-c - security update
DLA-433-1xerces-c - security update
DLA-181-1xerces-c - security update
DSA-3199-1xerces-c - security update

Search for package or bug name: Reporting problems