libxslt-tools-1.1.28-13.3.1<>,0l\/=„[;IJ@/Z¿vJ܂v޺W?ˡy4 Y' "蓪#ώNEj%7t;~dUKX> }JwLAٴqH[Pώsn7_A3%,n dlˊ-L?7ZSu=oh#Zb aOWG(Dk$%bOEqKnu>=!L?!<d  Z 17@ l            K  Lp(89:BFG H I( X4YDZ|[\ ] ^#bc\deflu v8w x y z!,Clibxslt-tools1.1.2813.3.1Extended Stylesheet Language (XSL) Transformation utilitiesThis package contains xsltproc, a command line interface to the XSLT engine.\build71 Pedro Monreal Gonzalez pmonrealgonzalez@suse.compmonrealgonzalez@suse.compgajdos@suse.compmonrealgonzalez@suse.compascal.bleser@opensuse.orgchris@computersalat.dejengelh@medozas.dejengelh@medozas.decfarrell@suse.comagraf@suse.comjengelh@medozas.decoolo@suse.comdmueller@suse.deidonmez@novell.comidonmez@novell.comidonmez@novell.comcrrodriguez@opensuse.orggiecrilj@stegny.2a.plpuzel@novell.comcoolo@novell.comjengelh@medozas.decoolo@novell.com- Security fix: [bsc#1132160, CVE-2019-11068] * Bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded. * Added libxslt-CVE-2019-11068.patch- Fixed CVE-2015-7995 bsc#952474 * Type confusion vulnerability may cause a DoS - Added patch libxslt-CVE-2015-7995.patch- Fixed CVE-2017-5029 bcs#1035905 * Limit buffer size in xsltAddTextString to INT_MAX - Added patch libxslt-1.1.28-CVE-2017-5029.patch- security update: initialize random generator, CVE-2015-9019 [bsc#934119] + libxslt-random-seed.patch- Added patch libxslt-CVE-2016-4738.patch * Fix heap overread in xsltFormatNumberConversion: An empty decimal-separator could cause a heap overread. This can be exploited to leak a couple of bytes after the buffer that holds the pattern string. * bsc#1005591 CVE-2016-4738- update to 1.1.28: * fix generate-id() to avoid generating the same ID * fix crash with empty xsl:key/@match attribute * fix crash when passing an uninitialized variable to document() * fix regression: default namespace not correctly used * remove xsltTransStorageAdd and xsltTransStorageRemove from symbols.xml - changes from 1.1.27: * link python module with python library (Frederic Crozat) * report errors on variable use in key * the XSLT namespace string is a constant one * fix handling of names in xsl:attribute * reserved namespaces in xsl:element and xsl:attribute * null-terminate result string of cry:rc4_decrypt * EXSLT date normalization fix * exit after compilation of invalid func:result * fix for EXSLT func:function * rewrite EXSLT string:replace to be conformant * avoid a heap use after free error * fix a dictionary string usage * output should not include extraneous newlines when indent is off * document('') fails to return stylesheets parsed from memory * xsltproc should return an error code if xinclude fails * forwards-compatible processing of unknown top level elements * fix system-property with unknown namespace * fix default template processing on namespace nodes * fix a bug in selecting XSLT elements * fix a memory leak with xsl:number * fix a problem with ESXLT date:add() with January * fix generate-id() to not expose object addresses * allow whitespace in xsl:variable with select * fix direct pattern matching bug * add the saxon:systemId extension * add an append mode to document output * fix portability to upcoming libxml2-2.9.0 * precompile patterns in xsl:number - change soname macro back to "1" and enforce it in the files list - revert -tools subpackage for openSUSE < 12.2 as that has only become effective since 12.2 on the package that ships with the distribution, to avoid having a completely different package layout in this repository as compared to the stock distribution packages (added a Provides: libxslt-tools though)- add macro "soname" %{name}1 - fix "self obsoletion"- Make sure to follow shlib policy; put tools in a separate package like done in libxml2- Remove redundant tags (License: field is inherited) - Use exact EVR for Provides:- Tutorial contains GPL-2.0+ code. Either split this off into a subpackage or add GPL-2.0+ as an aggregation to the main licence tag- don't run make check in QEMU builds - breaks due to massive threading- Remove redundant/unwanted tags/section (cf. specfile guidelines)- add libtool as buildrequire to avoid implicit dependency- fix provides/obsoletes- Add dependency on libgcrypt-devel and libgpg-error-devel for the libxslt-devel package- Correctly obsolete libxslt package in the baselibs.conf too- Fix build on SLE- Fix broken requires,provides,Obsoletes causing "have choice.." build system errors - Remove all "la" files since they are no longer needed - Fix -devel pacakge requires and messed up -config scripts this may cause build fails of already broken dependant packages that do not link all the needed libraries in an explicit manner (This is not a bug here, it is expected to cause it)- package clean-up: - include library version number in the name of the binary package - add an alias for xsltproc (required by package xmlto)- update to libxslt-1.1.26 - Improvements: - Add xsltProcessOneNode to exported symbols for lxml - Features: - Add API versioning and various cleanups - xsl:sort lang support using the locale - Bug fixes - Portability, documentation fixes - drop libxslt-1.1.24-rc4-overflow.patch (included upstream) - drop libxslt-1.1.24-am.patch (included upstream)- buildrequire pkg-config to fix provides- add baselibs.conf as a source- fix build with automake 1.11libxsltbuild71 1557850116 1.1.28-13.3.11.1.28-13.3.11.1.28-13.3.11.1.28-13.3.11.1.28-13.3.1xsltproclibxslt-toolsAUTHORSCopyrightFEATURESNEWSREADMETODOlibxslt-toolsCOPYINGxsltproc.1.gz/usr/bin//usr/share/doc/packages//usr/share/doc/packages/libxslt-tools//usr/share/licenses//usr/share/licenses/libxslt-tools//usr/share/man/man1/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Maintenance:10215/openSUSE_Leap_42.3_Update/939d823e359d5573e3a216a435ec9da6-libxslt.openSUSE_Leap_42.3_Updatedrpmlzma5x86_64-suse-linuxELF 64-bit LSB executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/l, for GNU/Linux 3.0.0, BuildID[sha1]=d711c248728d25b56e1f047686301409bc2a7e8b, strippeddirectoryUTF-8 Unicode textASCII textISO-8859 texttroff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)RRRRRR RR R R R RRRRvZK 9RX6?0]"k%r=dOu6c!tr7%Gx,\y82hq< #Ȟ*8tE(دQbZOi:nT{c}iKFl?1pQkES 8ʙ۰;+1L:zk-3.KLFп%̡:uk9rB" ܰ9?5O: FdEmhZ;4)">" ߑJ4>0m&Ft'|c*Riбr}@Okƹ 1FbHX =Oi,55#W;H 4U']bPqHi\#kZ@oifdYՇspl!.3GJ긏 8Pj]ά3"gE[vCU⊉,4*l3֩#{tׂAՔG!onc[a>Q:mṂ $THj7c竫F0oZ6ʯ,6ɸx4B^hǛD2O/Y8qS_ngl{&A3JWAiy=𔺿3213])T*NP 'Lק$7 ^3kF'iBWsv%`zɦ"&Cӗ2UFoohdi\=6$ǩ}UΗ W;ކwUoM}mrQ\1_mDc ^x%Seg%|}~~Rת]iAk?-0$*X8ޤ#JB:sVB7LtcBDϱ Do=)\_C:[% px*)O& u4@as8D-ZP3+-6i.g^_9ojO$Đq |1w [$&W? 1oPř.~V^=.VNY&!`9^D^QoѺ.e'b%T| uXWAS=_+ ژh);#Ø`Է ;Brd$Gujm 4A&omsm\ phۿ˖Ÿxp̎S(Qt@cWl4B)%G1- 5m2NQg*:/@׭ 4ì&ᔚDa&zp SG^90ŗ)"O8טGpO@68[(R$}^;ܮ8)cE‌G0,|N뇟T^,N"g$mL+U^BNJȟ;0S!:郆&s`gMnsmL-FckX|$P_yWxCIZWvXѸfÆ΂?0 ՚S:‚^EԼS0~05!\MKb%5"ﶖыӖXMi"N[k)G~ȳ1]gf5Q ,yju.^rǢsX<̻5w˂S{ԛS3"XTT8+xVb5o~QozUJ`Wm6|._jJge,^}e9y)ۄաO#Ȥ<\"`|c:6)A"6i=0!-־=5dR4Q![$cߨ}_#w#Bjl!;+IH;Vј'~cfjxbkKvy8xFͺ) lF'Qq˄(^|-+UuZ,|T0['8[vT9h,eqO*šU:kk_ wy"4uV^'1HƚM W