[ubuntu/questing-proposed] python-xmltodict 0.13.0-1ubuntu1 (Accepted)

Hlib Korzhynskyy hlib.korzhynskyy at canonical.com
Tue Sep 16 13:15:37 UTC 2025


python-xmltodict (0.13.0-1ubuntu1) questing; urgency=medium

  * SECURITY UPDATE: XML Injection when inserting XML tags.
    - debian/patches/CVE-2025-9375-*.patch: Add checks for special characters
      in xmltodict.py.
    - CVE-2025-9375

Date: Mon, 15 Sep 2025 16:22:11 -0230
Changed-By: Hlib Korzhynskyy <hlib.korzhynskyy at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/python-xmltodict/0.13.0-1ubuntu1
-------------- next part --------------
Format: 1.8
Date: Mon, 15 Sep 2025 16:22:11 -0230
Source: python-xmltodict
Built-For-Profiles: noudeb
Architecture: source
Version: 0.13.0-1ubuntu1
Distribution: questing
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Hlib Korzhynskyy <hlib.korzhynskyy at canonical.com>
Changes:
 python-xmltodict (0.13.0-1ubuntu1) questing; urgency=medium
 .
   * SECURITY UPDATE: XML Injection when inserting XML tags.
     - debian/patches/CVE-2025-9375-*.patch: Add checks for special characters
       in xmltodict.py.
     - CVE-2025-9375
Checksums-Sha1:
 c6a6f07bc042d530f245c26457ac3aba46eab3ca 2129 python-xmltodict_0.13.0-1ubuntu1.dsc
 7c426783018bf41b2f805bbd031306d86e1a436c 5684 python-xmltodict_0.13.0-1ubuntu1.debian.tar.xz
 23435aaf33dc30d09858852f2407e2c509ec44c7 7281 python-xmltodict_0.13.0-1ubuntu1_source.buildinfo
Checksums-Sha256:
 7cc3aad193d15a2e5e32959ddbb38c5cff97790902db9e4d26125c70bb663da4 2129 python-xmltodict_0.13.0-1ubuntu1.dsc
 50bc789b05e64ef437832e4c4df92ced92c5e3372321ca254bec87eb047d9390 5684 python-xmltodict_0.13.0-1ubuntu1.debian.tar.xz
 77af174795b095abc4af0de05cb4051ddffe95df0db7f8a566f676802fbbaade 7281 python-xmltodict_0.13.0-1ubuntu1_source.buildinfo
Files:
 8429568c768b8ab7e9f733245f16b6b0 2129 python optional python-xmltodict_0.13.0-1ubuntu1.dsc
 e017f21b04df05058b80f80859dfd2c4 5684 python optional python-xmltodict_0.13.0-1ubuntu1.debian.tar.xz
 74adc97f95669cf1d580fe1e31d24217 7281 python optional python-xmltodict_0.13.0-1ubuntu1_source.buildinfo
Original-Maintainer: Sebastien Badia <sbadia at debian.org>


More information about the Questing-changes mailing list