cpio 2.13+dfsg-7.1ubuntu0.1 source package in Ubuntu

Changelog

cpio (2.13+dfsg-7.1ubuntu0.1) mantic-security; urgency=medium

  * SECURITY UPDATE: Path traversal vulnerability
    - debian/patches/CVE-2023-7207.patch: Create symlink placeholder
      if --no-absolute-filenames was given and replace placeholders
      after extraction.
    - debian/patches/revert-CVE-2015-1197-handling.patch: Removed.
    - CVE-2023-7207

 -- Fabian Toepfer <email address hidden>  Sun, 28 Apr 2024 14:32:00 +0200

Upload details

Uploaded by:
Fabian Toepfer
Uploaded to:
Mantic
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
utils
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Mantic updates main utils
Mantic security main utils

Downloads

File Size SHA-256 Checksum
cpio_2.13+dfsg.orig.tar.bz2 1.3 MiB fd1e6fb3c683bf82ae0db237af87376c6a376d1f6bf6564c9b335785e76106a9
cpio_2.13+dfsg-7.1ubuntu0.1.debian.tar.xz 37.9 KiB 67ffa1563892476d6b2b28edf1be18294da01dcc3f675582a1ddd6a7e1f2ea03
cpio_2.13+dfsg-7.1ubuntu0.1.dsc 2.1 KiB f8874689dd5999cddea94b90cc016281c145ffbcc86557b5e0af113f12ae0dbd

View changes file

Binary packages built by this source

cpio: GNU cpio -- a program to manage archives of files

 GNU cpio is a tool for creating and extracting archives, or copying
 files from one place to another. It handles a number of cpio formats
 as well as reading and writing tar files.

cpio-win32: GNU cpio -- a program to manage archives of files (win32 build)

 GNU cpio is a tool for creating and extracting archives, or copying
 files from one place to another. It handles a number of cpio formats
 as well as reading and writing tar files.
 .
 This is a win32 version of cpio. It's meant to be used by the win32-loader
 component of Debian-Installer.