X-Git-Url: https://git.cworth.org/git?p=gzip;a=blobdiff_plain;f=debian%2Fchangelog;h=088bed8e727e7e9eb4539ba7f1b15d6de7c307c6;hp=52d6a13cc7fa5870b0df1fa2e84d87ac2dd342ea;hb=0095746c83f59e1f45c9e803d61e205ab6cbfa83;hpb=8ba3484138b5d1e72fd4ef49d27159263cb6bea6 diff --git a/debian/changelog b/debian/changelog index 52d6a13..088bed8 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,23 +1,9 @@ -gzip (1.3.5-10sarge2) stable-security; urgency=high +gzip (1.3.5-11) unstable; urgency=low - * Non-maintainer upload by the Security Team: - * Fix several security problems discovered by Tavis Ormandy of Google: - - DoS through null pointer deference in the Huffman code (CVE-2006-4334) - - Out-of-bands stack write in LZH decompression code (CVE-2006-4335) - - Buffer overflow in pack code (CVE-2006-4336) - - Buffer overflow in LZH code (CVE-2006-4337) - - DoS through an infinite loop in LZH code (CVE-2006-4337) - (Patch by Thomas Biege of SuSe) + * patch from Peter Samuelson for bashism in zgrep, + closes: #314342, #314211, #312380, #310329 - -- Moritz Muehlenhoff Sun, 10 Sep 2006 21:01:47 +0000 - -gzip (1.3.5-10sarge1) stable; urgency=low - - * merge patch from Matt Zimmerman for futex hang due to improper signal - handling, closes: #310053, #315612 - * backport to stable since this problem affects several debian.org servers - - -- Bdale Garbee Tue, 8 Nov 2005 22:25:19 -0700 + -- Bdale Garbee Wed, 15 Jun 2005 14:39:11 -0600 gzip (1.3.5-10) unstable; urgency=medium