Changelog for
xmltooling-schemas-1.5.6-9.1.x86_64.rpm :
Wed Feb 28 13:00:00 2018 kstreitovaAATTsuse.com
- add xmltooling-1.5.6-CVE-2018-0489.patch to fix a security bug
when xmltooling 1.6.4 mishandles digital signatures of user data,
which allows remote attackers to obtain sensitive information or
conduct impersonation attacks via crafted XML data. NOTE: this
issue exists because of an incomplete fix for CVE-2018-0486.
[bsc#1083247] [CVE-2018-0489]
Mon Jan 15 13:00:00 2018 kstreitovaAATTsuse.com
- add xmltooling-1.5.6-CVE-2018-0486.patch to fix a security bug
when xmltooling mishandles digital signatures of user attribute
data, which allows remote attackers to obtain sensitive
information or conduct impersonation attacks via a crafted DTD
[bsc#1075975], [CVE-2018-0486]
Tue Sep 8 14:00:00 2015 kstreitovaAATTsuse.com
- sync Apache:Shibboleth packages with SLE12SP1 [bnc#944796]
Mon Sep 7 14:00:00 2015 kstreitovaAATTsuse.com
- update to xmltooling 1.5.6
* [CPPXT-105] - PKIX revocation checking calls OpenSSL\'s
X509_verify_cert in an unsupported way (breaks with OpenSSL
1.0.1p/1.0.2d and later)
Wed Aug 5 14:00:00 2015 mpluskalAATTsuse.com
- Add gpg signature
Thu Jul 30 14:00:00 2015 kstreitovaAATTsuse.com
- adjust Summary in the specfile
- remove unused conditionals
Mon Jul 27 14:00:00 2015 kstreitovaAATTsuse.com
- use spec-cleaner
- package cleaning
- add xmltooling-1.5.5-doxygen_timestamp.patch to remove timestamps
in a documentation generated by Doxygen and avoid RPMLINT warnings
(file-contains-date-and-time).
Fri Jul 24 14:00:00 2015 kstreitovaAATTsuse.com
- initial revision