-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 18 Aug 2025 01:31:08 +0800 Source: libxslt Binary: libxslt1-dev libxslt1.1 libxslt1.1-dbgsym xsltproc xsltproc-dbgsym Architecture: i386 Version: 1.1.35-1+deb12u2 Distribution: bookworm-security Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-ubc-01) Changed-By: Aron Xu Description: libxslt1-dev - XSLT 1.0 processing library - development kit libxslt1.1 - XSLT 1.0 processing library - runtime library xsltproc - XSLT 1.0 command line processor Closes: 1108074 1109123 Changes: libxslt (1.1.35-1+deb12u2) bookworm-security; urgency=high . * Fix information disclosure with improved memory handling of generated-id() (Closes: #1108074, CVE-2023-40403) * Fix type confusion in xmlNode.psvi between stylesheet and source nodes (Closes: #1109123, CVE-2025-7424) Checksums-Sha1: ed4cff57c623018edf58ad298d8426c78c2a2d0d 345516 libxslt1-dev_1.1.35-1+deb12u2_i386.deb 73cf925cc3a8403eb0f871fa0fe4c38a88279ac5 296980 libxslt1.1-dbgsym_1.1.35-1+deb12u2_i386.deb c111c74db381a9c9c063fdb7038a26c954ae1b3c 243340 libxslt1.1_1.1.35-1+deb12u2_i386.deb 61faa1d049d008d821fc3796c93fbb44e17ab2c8 7421 libxslt_1.1.35-1+deb12u2_i386-buildd.buildinfo f4cb4a47c83b0d0e9716603015c582cd026a5bf7 28076 xsltproc-dbgsym_1.1.35-1+deb12u2_i386.deb 34de577fbfc7cc12571fa1a4d496a8585f4a366f 114652 xsltproc_1.1.35-1+deb12u2_i386.deb Checksums-Sha256: 08e1ce496e964c4eca2ee0a01c58f674bb0337f0ff9535d23a6fa0f8a132fd2c 345516 libxslt1-dev_1.1.35-1+deb12u2_i386.deb 6524e182702c8b8fb438f517254f159b70d89625a6ed03e8d41def3085b58a45 296980 libxslt1.1-dbgsym_1.1.35-1+deb12u2_i386.deb 64e0ab72ecfd530a56f06583793b7da9dbf7734ab191d81a54746244c086c22d 243340 libxslt1.1_1.1.35-1+deb12u2_i386.deb bc130f479ee825d46b7fb1181b68dc714dcaec62518dbe878126688ff69cf34c 7421 libxslt_1.1.35-1+deb12u2_i386-buildd.buildinfo 3e6274d107710fe8c195a4448205fb41d9cc03a29c7830f8bdbbfe330c74a9b7 28076 xsltproc-dbgsym_1.1.35-1+deb12u2_i386.deb 1dd8eff9b2d7027d33f5fd39463261ff582bae27c28b4a3aa4ec01e5c8fb98b5 114652 xsltproc_1.1.35-1+deb12u2_i386.deb Files: 35a5e886b068506fddc7cc73a94c8683 345516 libdevel optional libxslt1-dev_1.1.35-1+deb12u2_i386.deb bfe743af13208a064ffd1772a872b7a9 296980 debug optional libxslt1.1-dbgsym_1.1.35-1+deb12u2_i386.deb c57abd5e5b29a3bd4b7357c8c2403468 243340 libs optional libxslt1.1_1.1.35-1+deb12u2_i386.deb 6e681cfeeb8a59884ff7378201508e69 7421 text optional libxslt_1.1.35-1+deb12u2_i386-buildd.buildinfo 74ba30953e0071cbbca0fcf496608437 28076 debug optional xsltproc-dbgsym_1.1.35-1+deb12u2_i386.deb 5df1063153e9bebfd6fbb65220040889 114652 text optional xsltproc_1.1.35-1+deb12u2_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEnw0rdzqckKx6dwRTEbCLukZn24oFAmiiGCQACgkQEbCLukZn 24r8WBAAhKmQbqlaR5OiZVjHU0DGSdbBDOl4AvNvhC6WWZ56E5gCQowQUIR246HR nkkq/ioW7MZ7EjjOfQip7512CN/9qIA4AGvhuL2TAbCXRa9XAJq0S6klekmeLbe+ QZzzDPVr93CcjlY7b8eOPoE/1rGHzGKE+NDWV3VcxPDfVrL+XeA5ru5trNQfyPys G9ajKRga/b8+wAMzGP9GbQeaYo1+Nnj1QS3gWRCQIFTDOXMuyB1ag2kRBqFRT+wg Ih8QZ4ifz1jMf5qpW3MTnUpm+QNEWa3BZvwQ5e/xwiPuAMdHq1YUYv93JVx8FbDH BNfzCSolkC6Mm5lY78BowjGcC6WXBL6h2DmrjD0ArRClXDZPAav/L14ZVaJIinte snm5Ynwzqu9t/fMzat46FaQo1s5NqM5NGMTPzeqmKnKC5AT7aTEsnGinCEnt3d4Y fQn/VjFFcGxiexIIwHGOzmh6m+diNzJKHOPAAGUG7yrTo2f7avsTkTvYSDNEx6Rz EOrclEl73imH0+WGbAc+Hodm7dEsI4UwWJCB3/nvIzjOeA8f8aOnUWP4cq8Nm+Lf 9txMff3B6cwtOZoV3dgmAyY4IUIDX2oHaq8xJ6Uv6Xgm/x4C1gwToxaUq/U2wPJw qXVyt0wAJ1YJCAj5txihmkXwtpVts5JGh4f3TuE5Uk4tLapstzw= =ZGCh -----END PGP SIGNATURE-----