[ubuntu/precise-security] unzip 6.0-4ubuntu2.3 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Tue Feb 17 20:22:20 UTC 2015


unzip (6.0-4ubuntu2.3) precise-security; urgency=medium

  * SECURITY UPDATE: heap overflow in charset_to_intern()
    - debian/patches/04-unzip60-alt-iconv-utf8: updated to fix buffer
      overflow in unix/unix.c.
    - CVE-2015-1315
  * SECURITY REGRESSION: regression with executable jar files
    - debian/patches/09-cve-2014-8139-crc-overflow: updated to fix
      regression.
  * SECURITY REGRESSION: regression with certain compressed data headers
    - debian/patches/12-cve-2014-9636-test-compr-eb: updated to fix
      regression.

Date: 2015-02-17 19:39:18.516580+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/unzip/6.0-4ubuntu2.3
-------------- next part --------------
Sorry, changesfile not available.


More information about the Precise-changes mailing list