Branches for Lenny

Name Status Last Modified Last Commit
lp://qastaging/debian/lenny/dpkg 2 Mature 2011-01-05 10:58:17 UTC
10. * Fix multiple security issues with d...

Author: Raphaƫl Hertzog
Revision Date: 2011-01-05 10:58:17 UTC

* Fix multiple security issues with dpkg-source (CVE-2010-1679):
  - Enhance checks to catch maliciously crafted patches which could modify
    files outside of the unpacked source package.
  - Do not consider a top-level symlink like a directory when
    extracting a tarball.
  - Exclude .pc while extracting the upstream tarball in 3.0 (quilt)
    as patch blindly writes in that directory during unpack (and would
    follow any existing symlink).

11 of 1 result