kumquat-buildroot/package/minizip-zlib
Fabrice Fontaine de7bc4ada2 package/minizip-zlib: fix CVE-2023-45853
MiniZip in zlib through 1.3 has an integer overflow and resultant
heap-based buffer overflow in zipOpenNewFileInZip4_64 via a long
filename, comment, or extra field. NOTE: MiniZip is not a supported part
of the zlib product.

Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
2023-10-25 21:16:46 +02:00
..
0001-Reject-overflows-of-zip-header-fields-in-minizip.patch
Config.in
minizip-zlib.hash
minizip-zlib.mk