Format: 1.8 Date: Wed, 07 Jan 2015 16:15:57 -0500 Source: unzip Binary: unzip Architecture: i386 Version: 6.0-1ubuntu0.1 Distribution: lucid Urgency: medium Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: unzip - De-archiver for .zip files Changes: unzip (6.0-1ubuntu0.1) lucid-security; urgency=medium . * SECURITY UPDATE: CRC32 verification heap-based overflow - extract.c: check extra block length. - CVE-2014-8139 * SECURITY UPDATE: out-of-bounds write issue in test_compr_eb() - extract.c: properly validate sizes. - CVE-2014-8140 * SECURITY UPDATE: out-of-bounds read issues in getZip64Data() - fileio.c: validate extra fields. - process.c: check sizes. - CVE-2014-8141 Checksums-Sha1: 5e8ae1366e62f3dad3361441dbee54cc5a94bdfc 177718 unzip_6.0-1ubuntu0.1_i386.deb Checksums-Sha256: 800b61b5f92507e1798b4792b06aeb7476a56384520d0724a3588282fba674bc 177718 unzip_6.0-1ubuntu0.1_i386.deb Files: 5f34ff64106cdd78b5442fb62695a49a 177718 utils optional unzip_6.0-1ubuntu0.1_i386.deb Original-Maintainer: Santiago Vila