drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Zwei Probleme in libzip
| Name: |
Zwei Probleme in libzip |
|
| ID: |
FEDORA-2012-4485 |
|
| Distribution: |
Fedora |
|
| Plattformen: |
Fedora 17 |
|
| Datum: |
Do, 12. April 2012, 08:53 |
|
| Referenzen: |
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1162
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1163 |
|
Originalnachricht |
Name : libzip Product : Fedora 17 Version : 0.10.1 Release : 1.fc17 URL : http://www.nih.at/libzip/index.html Summary : C library for reading, creating, and modifying zip archives Description : libzip is a C library for reading, creating, and modifying zip archives. Files can be added from data buffers, files, or compressed data copied directly from other zip archives. Changes made without closing the archive can be reverted. The API is documented by man pages.
------------------------------------------------------------------------------- - Update Information:
Upstream changelog:
* Fixed CVE-2012-1162
* Fixed CVE-2012-1163 ------------------------------------------------------------------------------- - References:
[ 1 ] Bug #802564 - CVE-2012-1162 libzip: heap overflow flaw when processing malformed zip file https://bugzilla.redhat.com/show_bug.cgi?id=802564 [ 2 ] Bug #803028 - CVE-2012-1163 libzip: integer overflow when processing malformed zip file https://bugzilla.redhat.com/show_bug.cgi?id=803028 ------------------------------------------------------------------------------- -
This update can be installed with the "yum" update program. Use su -c 'yum update libzip' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys ------------------------------------------------------------------------------- - _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-announce
|
|
|
|