Bug#775687: libmspack: CHM decompression: another pointer arithmetic overflow

2015-01-29 Thread Sebastian Andrzej Siewior
0.5alpha has been just released [0] with this issue fixed. If you package that one you get rid of all currently known bugs :) [0] http://www.cabextract.org.uk/libmspack/libmspack-0.5alpha.tar.gz Sebastian -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of

Bug#775687: libmspack: CHM decompression: another pointer arithmetic overflow

2015-01-18 Thread Stuart Caie
On 18/01/2015 22:00, Sebastian Andrzej Siewior wrote: On 2015-01-18 18:59:33 [+0100], Jakub Wilk wrote: Sorry, it's me again! libmspack crashes on the attached file: As I've seen your ubsan reports, I assumed you were done. Wrong this was. $ gpg -d crash.chm.asc crash.chm $ test/chmd_md5

Bug#775687: libmspack: CHM decompression: another pointer arithmetic overflow

2015-01-18 Thread Sebastian Andrzej Siewior
On 2015-01-18 18:59:33 [+0100], Jakub Wilk wrote: Sorry, it's me again! libmspack crashes on the attached file: As I've seen your ubsan reports, I assumed you were done. Wrong this was. $ gpg -d crash.chm.asc crash.chm $ test/chmd_md5 crash.chm *** crash.chm but it'd be better to fix the