oss-sec mailing list archives

Re: Heap overflow and DoS in unzip 6.0


From: Mark Felder <feld () feld me>
Date: Thu, 17 Sep 2015 11:41:44 -0500



On Tue, Sep 15, 2015, at 11:38, Hanno Böck wrote:

There are issues from 2009(!) that haven't seen a fix yet, at least
not in a release:
http://www.info-zip.org/phpBB3/viewtopic.php?f=7&t=267


Are any distros shipping patches to solve these issues? I'd import them
into FreeBSD ports if so...


-- 
  Mark Felder
  feld () feld me


Current thread: