-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 07 Aug 2023 17:51:31 +0200 Source: libhtmlcleaner-java Binary: libhtmlcleaner-java libhtmlcleaner-java-doc Architecture: all Version: 2.26-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: all Build Daemon (x86-grnet-02) Changed-By: Markus Koschany Description: libhtmlcleaner-java - Java HTML Parser library libhtmlcleaner-java-doc - Java HTML Parser library (documentation) Changes: libhtmlcleaner-java (2.26-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload. * Fix CVE-2023-34624: A security vulnerability has been discovered in libhtmlcleaner-java, a Java HTML parser library. An attacker was able to cause a denial of service (StackOverflowError) if the parser runs on user supplied input with deeply nested HTML elements. This update introduces a new nesting depth limit which can be overridden in cleaner properties. Checksums-Sha1: 291f8325e454018c7ff1922474f7acdf08d0c532 144432 libhtmlcleaner-java-doc_2.26-1+deb12u1_all.deb ee6adb1e832d1de8b36631c11539297e546764f1 14928 libhtmlcleaner-java_2.26-1+deb12u1_all-buildd.buildinfo aaf433aff786573af0efe556c9ed7e6ace244a53 176656 libhtmlcleaner-java_2.26-1+deb12u1_all.deb Checksums-Sha256: c970ae6410e6545ecbee6b486976c3504d2a8144560ffb82b1900edcec450b25 144432 libhtmlcleaner-java-doc_2.26-1+deb12u1_all.deb 8808250b5a5fa108c23250b0980f421fa81bb55b40cee092de4b385b70ac8d4b 14928 libhtmlcleaner-java_2.26-1+deb12u1_all-buildd.buildinfo 7679e9085a93265ed300b38edc33daf80dd0e6c62f3815aba4fd9a90c4642470 176656 libhtmlcleaner-java_2.26-1+deb12u1_all.deb Files: c29fdd1d585e7450312962ef216bcde9 144432 doc optional libhtmlcleaner-java-doc_2.26-1+deb12u1_all.deb 9916a2c172fecd3c0014961653253547 14928 java optional libhtmlcleaner-java_2.26-1+deb12u1_all-buildd.buildinfo b6c739f9af4be934a8f91d8c0c7d20fd 176656 java optional libhtmlcleaner-java_2.26-1+deb12u1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEzW1K1578DQd6MDTQEbLkkg2OS0oFAmTRHe0ACgkQEbLkkg2O S0oImxAApUnlojx73v2LreiM4btJ8xb33ffiEAO5sLHR7B0hlWVMxNixOocHTy/Z bHQAqsW8tfE2OiXtzCaMnjDxDpWU3JxnqiV7ubk7079Uo9h7CZmpjEYN1Ubu3aXy 0k7F5CAAY4qK+wxs2ezxdoTp6UeaaCl8vZfpmshlrJ2Q8uVHs6dhL0ZM9OA5z/xf 9sv4zRxZZYJ+fvjKBohIYhQP8u3xC7ERTGf4ZZ4aLjnP7x1i8JXtfRqWpyqEsJyp 6Eho9NR+g0gQweJP0U7uUuPmDVk+sWJVGrd604lwQH3ZYUXh/MHfqs8S2UV/O7ta gnMJz5XPqvxieCZsTv7BFKQXhN98T/tggNAotbiD2O88309H+xtRIaIkfCQzvV7y Z69jA+HBS7OBwIyOP4NAvH0Nm62umtiPRzheZf67ww0tig9T7UKqLAS9Als0j/Fm x+2sQO796Pd2+pjoDcksJpZ82yWwGeGKvfcze16iHC8cN6M3I0XD4FOhlxZQOQqY WBvcfjWRbQygVVBUSlv9acqLKggwrd4CujFX3tnkSXtuhXvCOUeVDFv3qSQqq87L JSR3AptlOctGdjdD0iMXOO8cTcSxyEFJyR3Wr8N9qQSGxj7P6w4wifWKC4DzyUkF tpYtBZEf3e5cn8c1PnPNH6Jup/t8p/k9xomEgq67KcgYNGgfx5w= =+uXJ -----END PGP SIGNATURE-----