Skip to content
Snippets Groups Projects
Verified Commit a44b1ab6 authored by Max Rees's avatar Max Rees
Browse files

system/unzip: change upstream to Debian (#123)

Debian's patches close several CVEs, including a few of which I wasn't
even aware. They also include the patches we were already carrying:

These were plucked directly from Debian so the names are the same:
10-unzip-handle-pkware-verify.patch
20-unzip-uidgid-fix.patch

Our unzip-6.0-heap-overflow-infloop.patch is covered by Debian's:
14-cve-2015-7696.patch
15-cve-2015-7697.patch
16-fix-integer-underflow-csiz-decrypted.patch
parent 3e7d2c3b
No related branches found
No related tags found
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment