On Wed, Nov 09, 2016 at 12:57:50AM +0000, Marius Bakke wrote: > Leo Famulari writes: > > > Here is a patch to fix CVE-2016-4738 in libxslt. > > From 1cbfeb5bb98924eddf1726fe56987fd1d282e7f8 Mon Sep 17 00:00:00 2001 > > From: Leo Famulari > > Date: Tue, 8 Nov 2016 17:12:01 -0500 > > Subject: [PATCH] gnu: libxslt: Fix CVE-2016-4738. > > > > * gnu/packages/patches/libxslt-CVE-2016-4738.patch: New file. > > * gnu/local.mk (dist_patch_DATA): Add it. > > * gnu/packages/xml.scm (libxslt)[replacement]: New field. > > (libxslt/fixed): New variable. > > Yay, more grafts ;) > > Anyway, LGTM, thanks! Thanks for the reviews. Pushed as 0b34b58688ac0d9bc0e2700acf82269e67ccdfa3