Overview

Request 521697 superseded

- update to version 1.3.0:
* Support bzip2 compressed zip archives
* Improve file progress callback code
* Fix zip_fdopen()
* CVE-2017-12858: Fix double free().
* CVE-2017-14107: Improve EOCD64 parsing.
- remove upstreamed libzip-CVE-2017-12858.patch
- added libzip-disable-failing-test.patch [bsc#1056996#c12]

Loading...
Request History
Petr Gajdos's avatar

pgajdos created request

- update to version 1.3.0:
* Support bzip2 compressed zip archives
* Improve file progress callback code
* Fix zip_fdopen()
* CVE-2017-12858: Fix double free().
* CVE-2017-14107: Improve EOCD64 parsing.
- remove upstreamed libzip-CVE-2017-12858.patch
- added libzip-disable-failing-test.patch [bsc#1056996#c12]


Saul Goodman's avatar

licensedigger accepted review

ok


Factory Auto's avatar

factory-auto declined review

Output of check script:
Attention, libzip-CVE-2017-12858.patch is not mentioned in spec files as source or patch.
A patch (libzip-disable-failing-tests.patch) is being added without being properly referenced from the changelog.


Factory Auto's avatar

factory-auto declined request

Output of check script:
Attention, libzip-CVE-2017-12858.patch is not mentioned in spec files as source or patch.
A patch (libzip-disable-failing-tests.patch) is being added without being properly referenced from the changelog.


Petr Gajdos's avatar

pgajdos superseded request

superseded by 521703

openSUSE Build Service is sponsored by