Branches for Edgy

Name Status Last Modified Last Commit
lp:ubuntu/edgy/gzip 1 Development 2009-07-05 03:16:09 UTC
5. * SECURITY UPDATE: Arbitrary code exe...

Author: Martin Pitt
Revision Date: 2006-09-14 13:45:18 UTC

* SECURITY UPDATE: Arbitrary code execution or DoS with specially crafted
  gzipped/compress'ed files. Tavis Ormandy did a comprehensive security
  review, applied his patch to fix the following issues:
* NULL Dereference [CVE-2006-4334].
* Buffer overflows in LZH uncompressor's make_table() [CVE-2006-4335,
  CVE-2006-4337].
* Buffer underflow in gzip unpacker's build_tree() [CVE-2006-4336].
* Infinite loop in LZH uncompressor [CVE-2006-4338].

11 of 1 result