Format: 1.8 Date: Fri, 08 Apr 2022 06:53:06 -0400 Source: gzip Binary: gzip Built-For-Profiles: noudeb Architecture: ppc64el Version: 1.10-4ubuntu4 Distribution: jammy-proposed Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: gzip - GNU compression utilities Changes: gzip (1.10-4ubuntu4) jammy; urgency=medium . * SECURITY UPDATE: arbitrary file override with crafted file names - debian/patches/CVE-2022-1271-1.patch: avoid exploit via multi-newline file names in zgrep.in. - debian/patches/CVE-2022-1271-2.patch: add test in tests/Makefile.am, tests/zgrep-abuse. - debian/patches/CVE-2022-1271-3.patch: port to POSIX sed in zgrep.in. - debian/patches/CVE-2022-1271-4.patch: optimize out a grep in gzexe.in. - debian/patches/CVE-2022-1271-5.patch: use C locale more often in gzexe.in, sample/zfile, zdiff.in, zgrep.in, znew.in. - debian/patches/CVE-2022-1271-6.patch: fix "binary file matches" mislabeling in tests/Makefile.am, tests/zgrep-binary, zgrep.in. - debian/rules: fix permissions on new test scripts. - CVE-2022-1271 Checksums-Sha1: c5dfb65a779966c5e55b65a4eae2b962a5d437b9 128514 gzip-dbgsym_1.10-4ubuntu4_ppc64el.ddeb 102b267e06d7a64a69947654115a876e1a04306c 6107 gzip_1.10-4ubuntu4_ppc64el.buildinfo 04d396fab98bbb7287e448274d6a85550b2dc60c 111498 gzip_1.10-4ubuntu4_ppc64el.deb Checksums-Sha256: 34c030fef8a0bfa50d7c33cbc22a717ff281b4025d15ebc89c7ba73fcc6b1630 128514 gzip-dbgsym_1.10-4ubuntu4_ppc64el.ddeb e6d898ba3d97ad22a80d62e83d05befe6bdd9bc77b1646597d1e4c46b3ed7a54 6107 gzip_1.10-4ubuntu4_ppc64el.buildinfo 4ac5c8baf75397019fc983051616c166de328ab88efb02b256bc02d7a2aa12ef 111498 gzip_1.10-4ubuntu4_ppc64el.deb Files: a3bfeb69fbe2acc62d1d267f4270e20b 128514 debug optional gzip-dbgsym_1.10-4ubuntu4_ppc64el.ddeb 95cb56fce8b6ac3c48db673f5338c44e 6107 utils required gzip_1.10-4ubuntu4_ppc64el.buildinfo 7dc9fe682b3ac5e08c99e571ca9975bd 111498 utils required gzip_1.10-4ubuntu4_ppc64el.deb Original-Maintainer: Milan Kupcevic