-
Thu Oct 24 2019 Jakub Martisko <jamartis@redhat.com> - 0.13.62-12
- Fix a directory traversal bug
- unzip-mem should now strip all "../" prefixes from the archived files
- Resolves: CVE-2018-17828
-
Thu Feb 28 2019 Jakub Martisko <jamartis@redhat.com> - 0.13.62-11
- Fix CVE-2018-6541
- Part of the original patch has already been applied in the past (CVE-2018-7726),
so the bug should not be reproducible in a way described in the github
issue, even without this commit. Applying the rest of the original patch anyway.
- https://github.com/gdraheim/zziplib/issues/16
- Related: CVE-2018-6541
-
Thu Feb 28 2019 Jakub Martisko <jamartis@redhat.com> - 0.13.62-10
- Fix CVE-2018-16548
- Resolves: CVE-2018-16548
-
Wed Jun 20 2018 Jakub Martisko <jamartis@redhat.com> - 0.13.62-9
- Fix covscan warning
- "Variable "file" going out of scope leaks the storage it points to."
has been introduced by the original version of 0001-fix-CVE-2018-7725.patch
- Related: 1558596
-
Thu Jun 14 2018 Jakub Martisko <jamartis@redhat.com> - 0.13.62-8
- Fix CVE-2018-7727
- Resolves: 1558891
-
Wed Jun 13 2018 Jakub Martisko <jamartis@redhat.com> - 0.13.62-7
- Fix CVE-2018-7726
- Resolves: 1558623
-
Wed Jun 13 2018 Jakub Martisko <jamartis@redhat.com> - 0.13.62-6
- Fix CVE-2018-7725
- Resolves: 1558596
-
Fri Jan 24 2014 Daniel Mach <dmach@redhat.com> - 0.13.62-5
- Mass rebuild 2014-01-24
-
Fri Dec 27 2013 Daniel Mach <dmach@redhat.com> - 0.13.62-4
- Mass rebuild 2013-12-27
-
Thu Jul 04 2013 Michal Luscon <mluscon@redhat.com> 0.13.62-3
- Fix source address