Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: cherry-pick 81d7b3e6138c from chromium #38271

Merged
merged 2 commits into from May 16, 2023

Conversation

ppontes
Copy link
Member

@ppontes ppontes commented May 12, 2023

M112: Cherry pick libxml CVE fix

This patch cherry-picks a fix for [CVE-2023-29469] from libxml:
https://gitlab.gnome.org/GNOME/libxml2/-/commit/547edbf1cbdccd46b2e8ff322a456eaa5931c5df

I cherry-picked these by going into my libxml checkout, checking out the
commit that libxml is at for this M112 branch, cherry-picking the CVE
fixes, then running the roll script on all platforms.

Bug: 1433328
Change-Id: Iaee58b0890f7190386cca3e430286f39ccbbdb02
Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/4456592
Commit-Queue: David Baron dbaron@chromium.org
Reviewed-by: David Baron dbaron@chromium.org
Commit-Queue: Joey Arhar jarhar@chromium.org
Auto-Submit: Joey Arhar jarhar@chromium.org
Cr-Commit-Position: refs/branch-heads/5615@{#1325}
Cr-Branched-From: 9c6408ef696e83a9936b82bbead3d41c93c82ee4-refs/heads/main@{#1109224}

Notes: Security: backported fix for 1433328.

@ppontes ppontes requested a review from a team as a code owner May 12, 2023 21:19
@ppontes ppontes added security 🔒 semver/patch backwards-compatible bug fixes backport-check-skip Skip trop's backport validity checking 24-x-y labels May 12, 2023
@electron-cation electron-cation bot added new-pr 🌱 PR opened in the last 24 hours and removed new-pr 🌱 PR opened in the last 24 hours labels May 12, 2023
@codebytere codebytere added semver/patch backwards-compatible bug fixes and removed semver/patch backwards-compatible bug fixes labels May 15, 2023
@jkleinsc jkleinsc force-pushed the cherry-pick/24-x-y/chromium/81d7b3e6138c branch from 9ff5eb2 to 7b64c8c Compare May 16, 2023 15:45
@jkleinsc jkleinsc merged commit 4c46a94 into 24-x-y May 16, 2023
13 checks passed
@jkleinsc jkleinsc deleted the cherry-pick/24-x-y/chromium/81d7b3e6138c branch May 16, 2023 20:32
@release-clerk
Copy link

release-clerk bot commented May 16, 2023

Release Notes Persisted

Security: backported fix for 1433328.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
24-x-y backport-check-skip Skip trop's backport validity checking security 🔒 semver/patch backwards-compatible bug fixes
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants