]> code.ossystems Code Review - openembedded-core.git/commit
unzip: fix four CVE defects
authorRoy Li <rongqing.li@windriver.com>
Tue, 23 Jun 2015 05:32:06 +0000 (13:32 +0800)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Mon, 20 Jul 2015 19:53:08 +0000 (20:53 +0100)
commit429ab46f975c05f65120beddf50099c7cb0b2f86
treea0ad7b5391025bc10d05c5996fdae9ba378c7dbd
parent7c667c6aa0302649c125b0325a2e6f641810cb09
unzip: fix four CVE defects

Port four patches from unzip_6.0-8+deb7u2.debian.tar.gz to fix:
     cve-2014-8139
     cve-2014-8140
     cve-2014-8141
     cve-2014-9636

Signed-off-by: Roy Li <rongqing.li@windriver.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
meta/recipes-extended/unzip/unzip/09-cve-2014-8139-crc-overflow.patch [new file with mode: 0644]
meta/recipes-extended/unzip/unzip/10-cve-2014-8140-test-compr-eb.patch [new file with mode: 0644]
meta/recipes-extended/unzip/unzip/11-cve-2014-8141-getzip64data.patch [new file with mode: 0644]
meta/recipes-extended/unzip/unzip/12-cve-2014-9636-test-compr-eb.patch [new file with mode: 0644]
meta/recipes-extended/unzip/unzip_6.0.bb