This is the mail archive of the
cygwin-apps
mailing list for the Cygwin project.
[SECURITY] bzip2
- From: Corinna Vinschen <corinna-cygwin at cygwin dot com>
- To: cygwin-apps at cygwin dot com
- Date: Tue, 18 Mar 2008 15:01:29 +0100
- Subject: [SECURITY] bzip2
- Reply-to: cygwin-apps at cygwin dot com
Hi Charles,
I just read that a security problem which has been found in F-Secure
is also a problem for other packages, namely 7zip and bzip2(*).
While this is apparently fixed in our 7zip release 4.57 (called 4.5.7
in the below URL), it's only fixed in bzip2 1.0.5. We're still at
1.0.3. Any problem to update?
Thanks,
Corinna
(*) https://www.cert.fi/haavoittuvuudet/joint-advisory-archive-formats.html
--
Corinna Vinschen Please, send mails regarding Cygwin to
Cygwin Project Co-Leader cygwin AT cygwin DOT com
Red Hat