Overview

Request 984474 accepted

- Fix a stack buffer over-read in bundled c-shquote (bsc#1200332,
CVE-2022-31212)
* fix-upstream-CVE-2022-31212.patch
- Fix a NULL pointer dereferences in bundled c-shquote (bsc#1200333,
CVE-2022-31213)
* fix-upstream-CVE-2022-31213.patch
* this patch also backports some c_mem* functions to c-stdaux
as they didnt exist in this version

Request History
Simon Lees's avatar

simotek created request

- Fix a stack buffer over-read in bundled c-shquote (bsc#1200332,
CVE-2022-31212)
* fix-upstream-CVE-2022-31212.patch
- Fix a NULL pointer dereferences in bundled c-shquote (bsc#1200333,
CVE-2022-31213)
* fix-upstream-CVE-2022-31213.patch
* this patch also backports some c_mem* functions to c-stdaux
as they didnt exist in this version


Factory Auto's avatar

factory-auto accepted review

Check script succeeded


Saul Goodman's avatar

licensedigger accepted review

ok


Maintenance Bot's avatar

maintbot accepted review

ok


Maintenance Bot's avatar

maintbot approved review

ok


Marcus Meissner's avatar

msmeissn moved maintenance target to openSUSE:Maintenance:17535


Marcus Meissner's avatar

msmeissn accepted request

accepted request 984474:Thanks!

For information about the update, see https://build.opensuse.org/project/maintenance_incidents/openSUSE:Maintenance

openSUSE Build Service is sponsored by