lz4 (1.9.3-2) unstable; urgency=medium
authorNobuhiro Iwamatsu <iwamatsu@debian.org>
Wed, 5 May 2021 07:29:57 +0000 (08:29 +0100)
committerNobuhiro Iwamatsu <iwamatsu@debian.org>
Wed, 5 May 2021 07:29:57 +0000 (08:29 +0100)
commit7d53eeab9b66c16a53d7b340e2f9ad2534fb9875
tree4d300909c23bc8315fef2e19c6443153d9d1f065
parentb18c1122c1ac32a584dfcabb102249bed8d0d0e3
parent87f44143a0d28146f82f8ce2925bf7b4ced4d717
lz4 (1.9.3-2) unstable; urgency=medium

  * Fix CVE-2021-3520. (Closes: #987856)
    - This fixed potential memory corruption with negative memmove() size.
    - Add d/patches/0005-CVE-2021-3520.patch

[dgit import unpatched lz4 1.9.3-2]
18 files changed:
debian/changelog
debian/control
debian/copyright
debian/liblz4-1.install
debian/liblz4-1.symbols
debian/liblz4-dev.install
debian/lz4.install
debian/lz4.manpages
debian/patches/0001-Show-build-info.patch
debian/patches/0002-Fix-static-link.patch
debian/patches/0003-Ignore-test.patch
debian/patches/0004-change-optimize.patch
debian/patches/0005-CVE-2021-3520.patch
debian/patches/series
debian/rules
debian/source/format
debian/upstream/metadata
debian/watch