FS#43391 - [unzip] CVE-2014-8140 out-of-bounds write issue in test_compr_eb

Attached to Project: Arch Linux
Opened by Levente Polyak (anthraxx) - Friday, 09 January 2015, 20:58 GMT
Last edited by Gaetan Bisson (vesath) - Saturday, 10 January 2015, 19:27 GMT
Task Type Bug Report
Category Security
Status Closed
Assigned To Gaetan Bisson (vesath)
Architecture All
Severity Medium
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 0
Private No

Details

Sorry, but Sami forgot to add one of the patch links to the previous ticket [0].

CVE-2014-8140 [1] (out-of-bounds write issue in test_compr_eb) is therefor not yet fixed,
the patch is available at bugzilla [2] or at the attached file below.

cheers,
Levente

[0] https://bugs.archlinux.org/task/43300
[1] https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-8140
[2] https://bugzilla.redhat.com/attachment.cgi?id=969621
This task depends upon

Closed by  Gaetan Bisson (vesath)
Saturday, 10 January 2015, 19:27 GMT
Reason for closing:  Fixed
Additional comments about closing:  unzip-6.0-9 in [extra]

Loading...