Go to:
Gentoo Home
Documentation
Forums
Lists
Bugs
Planet
Store
Wiki
Get Gentoo!
Gentoo's Bugzilla – Attachment 475064 Details for
Bug 620470
<app-arch/unzip-6.0_p21-r2: Multiple vulnerabilities
Home
|
New
–
[Ex]
|
Browse
|
Search
|
Privacy Policy
|
[?]
|
Reports
|
Requests
|
Help
|
New Account
|
Log In
[x]
|
Forgot Password
Login:
[x]
[patch]
18-cve-2014-9913-unzip-buffer-overflow.patch
18-cve-2014-9913-unzip-buffer-overflow.patch (text/plain), 1.35 KB, created by
Andrey Ovcharov
on 2017-06-03 05:27:42 UTC
(
hide
)
Description:
18-cve-2014-9913-unzip-buffer-overflow.patch
Filename:
MIME Type:
Creator:
Andrey Ovcharov
Created:
2017-06-03 05:27:42 UTC
Size:
1.35 KB
patch
obsolete
>From: "Steven M. Schweda" <sms@antinode.info> >Subject: Fix CVE-2014-9913, buffer overflow in unzip >Bug: https://sourceforge.net/p/infozip/bugs/27/ >Bug-Debian: https://bugs.debian.org/847485 >Bug-Ubuntu: https://launchpad.net/bugs/387350 >X-Debian-version: 6.0-21 > >Upstream-Status: Backport > >Signed-off-by: Zhixiong Chi <zhixiong.chi@windriver.com> > >--- a/list.c >+++ b/list.c >@@ -339,7 +339,18 @@ > G.crec.compression_method == ENHDEFLATED) { > methbuf[5] = dtype[(G.crec.general_purpose_bit_flag>>1) & 3]; > } else if (methnum >= NUM_METHODS) { >- sprintf(&methbuf[4], "%03u", G.crec.compression_method); >+ /* 2013-02-26 SMS. >+ * http://sourceforge.net/p/infozip/bugs/27/ CVE-2014-9913. >+ * Unexpectedly large compression methods overflow >+ * &methbuf[]. Use the old, three-digit decimal format >+ * for values which fit. Otherwise, sacrifice the >+ * colon, and use four-digit hexadecimal. >+ */ >+ if (G.crec.compression_method <= 999) { >+ sprintf( &methbuf[ 4], "%03u", G.crec.compression_method); >+ } else { >+ sprintf( &methbuf[ 3], "%04X", G.crec.compression_method); >+ } > } > > #if 0 /* GRR/Euro: add this? */
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Diff
View Attachment As Raw
Actions:
View
|
Diff
Attachments on
bug 620470
:
475062
| 475064 |
475066
|
475068