[Tools-discuss] New xml2rfc release 3.30.1
Kesara Rathnayake <kesara@staff.ietf.org> Tue, 26 August 2025 01:00 UTC
Return-Path: <kesara@staff.ietf.org>
X-Original-To: tools-discuss@mail2.ietf.org
Delivered-To: tools-discuss@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 008EE58E5FD9 for <tools-discuss@mail2.ietf.org>; Mon, 25 Aug 2025 18:00:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -0.499
X-Spam-Level:
X-Spam-Status: No, score=-0.499 tagged_above=-999 required=5 tests=[BAYES_05=-0.5, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=staff-ietf-org.20230601.gappssmtp.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kYyhIFKzO1Ap for <tools-discuss@mail2.ietf.org>; Mon, 25 Aug 2025 18:00:41 -0700 (PDT)
Received: from mail-ed1-x536.google.com (mail-ed1-x536.google.com [IPv6:2a00:1450:4864:20::536]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id E7FC458E5FC3 for <tools-discuss@ietf.org>; Mon, 25 Aug 2025 18:00:41 -0700 (PDT)
Received: by mail-ed1-x536.google.com with SMTP id 4fb4d7f45d1cf-61c638ab6c9so2488005a12.1 for <tools-discuss@ietf.org>; Mon, 25 Aug 2025 18:00:41 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=staff-ietf-org.20230601.gappssmtp.com; s=20230601; t=1756170041; x=1756774841; darn=ietf.org; h=cc:to:subject:message-id:date:from:mime-version:from:to:cc:subject :date:message-id:reply-to; bh=8JyNBeCCigGL0TC/yKeZj4GItDRS8E479EAuOjyabr8=; b=tBS0DZhJByDNhOMWstPKNcSjYb+jMEZggtqkGDEUD6YX8nbd3LVxQ84AB0WjDJCDZq bBJCdIEx6sEFJmDScgKMNO68eSM2tpJKBc+KxXzao8pMu+NYKGpL6KF8X16FmZV77sDw baRtb+iCrdGP8408RDbBM7nqM6skVq++eVM7AGXF0ZgxNDt50Yt6+VZs5r7tJIQ/HMqh Ht5kfQ0IO4Zln36WV5lznpDFn5udIuhaPVEcbbRYxQqWeL38WpMBw6rnZcxdDHFZ2ewW GUwOMB3f8PwmR1WEvw5MDhTN6vUc3z+3FZU6RSYJD+TpvvWUaXRwj1VRsmLrNWvJwDku naLg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1756170041; x=1756774841; h=cc:to:subject:message-id:date:from:mime-version:x-gm-message-state :from:to:cc:subject:date:message-id:reply-to; bh=8JyNBeCCigGL0TC/yKeZj4GItDRS8E479EAuOjyabr8=; b=CVMbZWpGFD0jsrzj+KtDkiZ4hlF9rVg7tWpBpD1XSbelrh92VFDcM1T6bdb/mFm2Km fKXC7K2wIBOgS8Y9sclaUPXmqLPia5ViHKHp4SE/OUtu64ElmSJeCkL06hUZxIwmcN8x xR/x38m/j5wC2YfgXx6K2IIJ+odFunnc5/u528BkLZWCZ3EaM8QrRxoKAZSetyHUZBXS 7TieI/hVGePdzCo8PJhuLHWhatHsuWvYSv+4YucZ5JxhVLtHLXrP10IYwrZDC80aGYIT 3cMl2KdYx60bqTWQYfZuUdzBEezCLgPDnRH2efSPhH8hrD1EFCv1Bh0bbovZHUn1sYkZ jkwQ==
X-Forwarded-Encrypted: i=1; AJvYcCWaxUiYsggwyFIwUX6Tdm04wsgQwtCUt7fGpHObWaO+ikF2LQtMt3oRKBLV50kJ5OxPPbqqR3JO3zXhPVOK@ietf.org
X-Gm-Message-State: AOJu0YwkXVBsKAQxjFRQi1nxWp97kZgx/1tDvq8KH26/et2Go54osyot 9bwHT3PXeig2wqv2+8CqvC6cftIBQbIXkdGhpRt1W8OfK/++y++KjkXIIxd5UJPleBzV0Gn0wfO LCLCl1Kspm3MVRZzSZvSwzOVEi+5JZoOKstNbK1spS36r
X-Gm-Gg: ASbGnctTIiU3BygpEwYTkRiQYPv28tfLclBW+5l+7VW3nC9S81h5VEEpqb2AVwGqPtN uFdq1UY/bGeTlsYLkAgLlV3I2gAAl0DVwzGkY8xTzd19f3DPrrWdbdz7zJUZIP34dbEB1fpiv28 sgp/6s6JBKUE9Fjwol9ylLqHSJwi1gi3nXbgpVDVZpkYGOODomF5nXm3+eit13obxS31w9zxCOq wy93/Mp
X-Google-Smtp-Source: AGHT+IEl89DdLvqTY3/O56pj6hLt5MTuwi2ZdvjKc7lV8KuFXwE/944dJUV7ururgzJfQ/KtRgpPZpDg9dYMW0bi6KY=
X-Received: by 2002:a17:906:c14b:b0:af5:3172:ca80 with SMTP id a640c23a62f3a-afe2953814dmr1350376366b.38.1756170040677; Mon, 25 Aug 2025 18:00:40 -0700 (PDT)
MIME-Version: 1.0
From: Kesara Rathnayake <kesara@staff.ietf.org>
Date: Tue, 26 Aug 2025 13:00:29 +1200
X-Gm-Features: Ac12FXzUcqLMAzATvKMtWpULpk0gs_AZxI5IdL7WzucvmCRZLQ1PQSl9x9AufK4
Message-ID: <CAD2=Z87eRwaW1M309-Ds6K8ixuf4xy3133TA3aLSSh2DoSvZkw@mail.gmail.com>
To: XML2RFC Interest Group <xml2rfc@ietf.org>, tools-discuss <tools-discuss@ietf.org>
Content-Type: multipart/alternative; boundary="00000000000070a8ad063d3a3350"
Message-ID-Hash: RE4ZT754LLPONIRHULAYUK54MV5HBMB6
X-Message-ID-Hash: RE4ZT754LLPONIRHULAYUK54MV5HBMB6
X-MailFrom: kesara@staff.ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tools-discuss.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: rfc-markdown@ietf.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Tools-discuss] New xml2rfc release 3.30.1
List-Id: IETF Tools Discussion <tools-discuss.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tools-discuss/B-PuGXO_49G41rYSQ7GpQnS2hl0>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tools-discuss>
List-Help: <mailto:tools-discuss-request@ietf.org?subject=help>
List-Owner: <mailto:tools-discuss-owner@ietf.org>
List-Post: <mailto:tools-discuss@ietf.org>
List-Subscribe: <mailto:tools-discuss-join@ietf.org>
List-Unsubscribe: <mailto:tools-discuss-leave@ietf.org>
Xin chào! See https://github.com/ietf-tools/xml2rfc/releases/tag/v3.30.1 for release details. This update fixes an arbitrary file read vulnerability in PDF generation. [1] [1] https://github.com/ietf-tools/xml2rfc/security/advisories/GHSA-cfmv-h8fx-85m7 Cheers, Kesara -- Kesara Rathnayake Senior Software Development Engineer - IETF Administration LLC kesara@staff.ietf.org
- [Tools-discuss] New xml2rfc release 3.30.1 Kesara Rathnayake