Lucene search

K
altlinuxHttps://packages.altlinux.org/en/sisyphus/security/F035A3BA0C3035565E1E3C519C64B987
HistoryMay 19, 2005 - 12:00 a.m.

Security fix for the ALT Linux 9 package gzip version 1.3.5-alt1

2005-05-1900:00:00
https://packages.altlinux.org/en/sisyphus/security/
packages.altlinux.org
9

0.008 Low

EPSS

Percentile

81.7%

May 19, 2005 Dmitry V. Levin 1.3.5-alt1

- Updated to 1.3.5.
- Reviewed and reworked patches.
- Added zegrep(1) and zfgrep(1) manpage links.
- Changed zgrep and zdiff to handle also functionality of
  bz*grep, bzcmp and bzdiff utilities.
- Changed znew utility to avoid dependence on compress utility.
- Relocated zme utility from bzip2-utils to gzip-utils.
- Relocated zmore utility to less package.
- Fixed chmod/chown race condition in file permission handling
  code (CAN-2005-0988).
- Changed gunzip to ignore path in original file name stored
  in gzip archive when uncompressing with -N; this measure
  prohibits uncontrolled files creation in arbitrary filesystem
  locations. (CAN-2005-1228).
- Fixed zgrep to properly sanitize arguments, to avoid arbitrary
  commands execution via filenames injection into a sed script
  (CAN-2005-0758).