Репозитории ALT
S: | 1.13-alt2 |
5.1: | 1.3.5-alt6 |
4.1: | 1.3.5-alt4.M40.1 |
4.0: | 1.3.5-alt4.M40.1 |
3.0: | 1.3.5-alt2 |
+updates: | 1.3.5-alt2.M30.1 |
Другие репозитории
Upstream: | 1.3.12 |
Группа :: Архивирование/Сжатие
Пакет: gzip
Главная Изменения Спек Патчи Sources Загрузить Gear Bugs and FR Repocop
13 января 2010 Dmitry V. Levin <ldv at altlinux.org> 1.3.5-alt6
- Applied upstream fix for integer underflow bug (CVE-2010-0001).
- gzip-utils: Added lzma/xz support to zdiff and zgrep.
- Rebuilt.
- Fixed several bugs (CVE-2006-433[5678])
based on patch from Tavis Ormandy. - zgrep: Terminate when pipeline is interrupted by signal (#9998).
- Fixed a segfault on invalid compressed data (patch from Gentoo).
- Updated to 1.3.5.
- Reviewed and reworked patches.
- Added zegrep(1) and zfgrep(1) manpage links.
- Changed zgrep and zdiff to handle also functionality of
bz*grep, bzcmp and bzdiff utilities. - Changed znew utility to avoid dependence on compress utility.
- Relocated zme utility from bzip2-utils to gzip-utils.
- Relocated zmore utility to less package.
- Fixed chmod/chown race condition in file permission handling
code (CAN-2005-0988). - Changed gunzip to ignore path in original file name stored
in gzip archive when uncompressing with -N; this measure
prohibits uncontrolled files creation in arbitrary filesystem
locations. (CAN-2005-1228). - Fixed zgrep to properly sanitize arguments, to avoid arbitrary
commands execution via filenames injection into a sed script
(CAN-2005-0758).
- rebuild with gcc3
- Added "Provides: /bin/gzip, /bin/gunzip, /bin/zcat" to gzip subpackage.
- 1.3.3 (nothing interesting).
- Additional convention enforcement on patch file names.
- Eliminated basename usage in gz* script utils.
- 1.3.2
- Renamed devel subpackage into gzip-utils.
- 1.3.1
- Updated patches.
- Corrected mktemp dependence.
- Synced with Owl:
+ Synced with Todd's latest fixes: re-create the temporary file in gzexe
safely when run on multiple files, support GZIP="--suffix .suf" in znew.
+ Patched unsafe temporary file handling in gzexe, zdiff, and znew based
on work by Todd Miller of OpenBSD.
+ Dropped Red Hat's patch which attempted to fix some of the same issues
for gzexe but was far from sufficient.
- Merged in RH patches:
+ Patch various uses of $$ in the bundled scripts
+ Fix the SIGPIPE patch to avoid blank lines (#43319)
+ Fixed buzilla bug #26680. Wrong skip value after mktemp patch and forced
overwrite for output file during decompression.
+ trap SIGPIPE in zgrep, so "zgrep | less" gets a happy ending
(#24104).
- Moved utilities to gzip-devel subpackage.
- Removed PreReq: %__install_info.
- Move lesspipe.sh and zless to less package.
- 1.3
- * RE and Fandra adaptions.
- Updated sources to 1.2.4a (minor doc changes)
- Updated rpm group
- Cleanup to conform to spec-helper
- added lesspipe.sh (allowing zless to handle arbitrary compressions
methods, but also allows to use less command line parameters on zless,
and use arrows keys to navigate between various files; that is a nice
and useful zless not one only limited to "zcat $* | less" )
- Fixed zforce.
- Fix building as user.
- Mandrake adaptions
- bzip2 man/info pages
- add de locale
- built against glibc 2.1
- translations modified for de, fr, tr
- added /usr/bin/gzip and /usr/bin/gunzip symlinks as some programs are too
brain dead to figure out they should be at least trying to use $PATH - added BuildRoot
- fix /tmp races
- uses install-info
- applied patch for gzexe
- built against glibc
- (Entry added for Marc by Erik) fixed gzexe to use /bin/gzip