-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 01 Feb 2015 23:48:28 +0100 Source: unzip Binary: unzip Architecture: source amd64 Version: 6.0-8+deb7u2 Distribution: wheezy-security Urgency: high Maintainer: Santiago Vila <sanvila@debian.org> Changed-By: Santiago Vila <sanvila@debian.org> Description: unzip - De-archiver for .zip files Closes: 775640 776589 Changes: unzip (6.0-8+deb7u2) wheezy-security; urgency=high . * Security upload. * CVE-2014-9636: Fix heap overflow. Ensure that compressed and uncompressed block sizes match when using STORED method in extract.c. Closes: #776589. * CVE-2014-8139: Update patch. The old one was not right and had regressions with executable jar files. Closes: #775640 Checksums-Sha1: 8400b0fb5fad43ef83065d59a4330ee3a0d0b179 1676 unzip_6.0-8+deb7u2.dsc f62b356bf40fcbf0e1143f99ed90860583c3ddbc 14193 unzip_6.0-8+deb7u2.debian.tar.gz 013a77751cd3d1e29adbd36978204631925ad5db 194898 unzip_6.0-8+deb7u2_amd64.deb Checksums-Sha256: b46313d05ee5cd7576390e8d21afe905f3b4eb08fa80ec97f1c2bf9197834123 1676 unzip_6.0-8+deb7u2.dsc 667c03e6b9ec219444f8a43c09532412d5e088f7c1803d673af899af34ebd6ab 14193 unzip_6.0-8+deb7u2.debian.tar.gz aa7091a39b99cde48e1ed0ae930518b64ff215fbbf4a124b761bf386c3d38b8f 194898 unzip_6.0-8+deb7u2_amd64.deb Files: 38b882234bc2a7b9350028f8ee09367c 1676 utils optional unzip_6.0-8+deb7u2.dsc 4fa58132df8930e551a5087f281149d4 14193 utils optional unzip_6.0-8+deb7u2.debian.tar.gz 0fe74b198d91d63fefbb3094c43313a3 194898 utils optional unzip_6.0-8+deb7u2_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJU0JetAAoJEAVMuPMTQ89ET+AP/36uVn5JvpaVAx7Ru9ZyT9V4 Vdwb1zubwU0wE9ldMeeuukS81+rXiwtNr0M77MjK2OULxSTf1Uw+BHy2+9p0AXm8 fCJsmmDckgkROaXDoIlRH5aPS9jaXSmYyBPM/P8X0iHxkDFsJvgl6J39ZYqBAXz9 w0ImGPiYuLivn/oSbDsqlMKU69CaA4uHXD8ETvFCBYE8v8uid2ZK+dzR+vA3/o6r mW8MsjWd/dQbfo9+PF4qYOKQcegyRInk1TAZmUgIhxpNGKwPVe7U846pcYc6OlVu W31pCTxNxiME1sSh+Vef5ZI4afWS3Qjq3hZqEaofOjjyDqETVhmku/hjmjUb6bPD ec4qEUMswBGeuI3cmuS7vJCdHCvapNNEQkhQ3ZASs+xcOaqi5OkZETuvQvdowkZW fxO7EIOivqn0S2IqB1H31QP366Z/x2DhMkz107wIMFdlkXNbWm9NGajgH+UUtPF0 tbW4LeGUhRQ/hgS6ZCtsqrmAxCPPK6FuAVPsZzqC3fJMrV+jnCktB374z8qx3MJ8 b1PxpBvbLN4YwD1JJlnTb3w+JmtH9gIbjFX59LBXf6YI5ELyWCxjBfYdW3Lays/J iKym+98gY2AbNgiLJd6s6aevY5hqrp/2yFlzqIqcy9ooSujFj2cgimrad6sXwh1K +Ce2HA0JHsi/+jnhwc2g =dAGc -----END PGP SIGNATURE-----