[MacPorts] #54409: unzip @6.0: fix multiple CVEs

MacPorts noreply at macports.org
Sun Jul 2 14:20:41 UTC 2017


#54409: unzip @6.0: fix multiple CVEs
----------------------+-------------------
 Reporter:  l2dy      |      Owner:
     Type:  defect    |     Status:  new
 Priority:  Normal    |  Milestone:
Component:  ports     |    Version:
 Keywords:  security  |       Port:  unzip
----------------------+-------------------
 From Debian patches:

 {{{
 09-cve-2014-8139-crc-overflow.patch
 10-cve-2014-8140-test-compr-eb.patch
 11-cve-2014-8141-getzip64data.patch
 12-cve-2014-9636-test-compr-eb.patch
 14-cve-2015-7696.patch
 15-cve-2015-7697.patch
 16-fix-integer-underflow-csiz-decrypted.patch
 18-cve-2014-9913-unzip-buffer-overflow.patch
 19-cve-2016-9844-zipinfo-buffer-overflow.patch
 }}}

--
Ticket URL: <https://trac.macports.org/ticket/54409>
MacPorts <https://www.macports.org/>
Ports system for macOS


More information about the macports-tickets mailing list