Removing upstream zcat-buffer-overrun.patch.
Signed-off-by: Daniel Baumann <daniel@debian.org>
This commit is contained in:
parent
0b238fdfef
commit
911e3a544c
2 changed files with 0 additions and 19 deletions
1
debian/patches/series
vendored
1
debian/patches/series
vendored
|
@ -1,3 +1,2 @@
|
||||||
debian/0001-build.patch
|
debian/0001-build.patch
|
||||||
debian/0002-zupdate.patch
|
debian/0002-zupdate.patch
|
||||||
upstream/0001-zcat-buffer-overrun.patch
|
|
||||||
|
|
|
@ -1,18 +0,0 @@
|
||||||
Author: Antonio Diaz-Diaz <antonio@gnu.org>
|
|
||||||
Description: zcat.cc: Fixed a buffer overrun on outbuf when '-v' is used [CVE-2018-1000637] (Closes: #902936).
|
|
||||||
|
|
||||||
diff -Naurp zutils/zcat.cc zutils/zcat.cc
|
|
||||||
--- zutils/zcat.cc
|
|
||||||
+++ zutils/zcat.cc
|
|
||||||
@@ -232,8 +232,9 @@ int cat( int infd, const int format_inde
|
|
||||||
enum { buffer_size = 4096 };
|
|
||||||
// buffer with space for sentinel newline at the end
|
|
||||||
uint8_t * const inbuf = new uint8_t[buffer_size+1];
|
|
||||||
- // buffer with space for character quoting and 255-digit line number
|
|
||||||
- uint8_t * const outbuf = new uint8_t[(4*buffer_size)+256];
|
|
||||||
+ // buffer with space for character quoting, 255-digit line number and
|
|
||||||
+ // worst case flushing respect to inbuf.
|
|
||||||
+ uint8_t * const outbuf = new uint8_t[(5*buffer_size)+256];
|
|
||||||
int retval = 0;
|
|
||||||
Children children;
|
|
||||||
if( !set_data_feeder( input_filename, &infd, children, format_index ) )
|
|
Loading…
Add table
Reference in a new issue