Bug#888297: p7zip: CVE-2017-17969: ZIP Shrink: Heap Buffer Overflow

2018-02-01 Thread Antoine Beaupre
On Fri, Jan 26, 2018 at 04:10:54PM -0500, Antoine Beaupre wrote: > Control: tags -1 +patch > > Since a fix was published in upstream 18.00-beta, I looked at the source > there and was able to produce a simple patch for wheezy, which should be > trivial to port to jessie and easy to port to

Bug#888297: p7zip: CVE-2017-17969: ZIP Shrink: Heap Buffer Overflow

2018-01-26 Thread Antoine Beaupre
Control: tags -1 +patch Since a fix was published in upstream 18.00-beta, I looked at the source there and was able to produce a simple patch for wheezy, which should be trivial to port to jessie and easy to port to stretch: