cpio 2.5-1.2ubuntu1 source package in Ubuntu

Changelog

cpio (2.5-1.2ubuntu1) breezy; urgency=low


  * SECURITY UPDATE: Modify permissions of arbitrary files, path traversal.
  * copyin.c, copypass.c: Use fchmod() and fchown() before closing the output
    file instead of chmod() and chown() after closing it. This avoids
    exploiting this race condition with a hardlink attach to chmod/chown
    arbitrary files. [CAN-2005-1111]
  * copyin.c: Separate out path sanitizing to safer_name_suffix(): Apart from
    leading slashes, filter out ".." components from output file names if
    --no-absolute-filenames is given, to avoid path traversal. [CAN-2005-1229]

 -- Martin Pitt <email address hidden>  Thu, 29 Sep 2005 12:04:52 +0200

Upload details

Uploaded by:
Ubuntu Archive Auto-Sync
Uploaded to:
Breezy
Original maintainer:
Brian Mays
Architectures:
any
Section:
utils
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
cpio_2.5-1.2ubuntu1.dsc 547 bytes a5c8e384a14364fd6da0e7771a3b06e07e926e19629e4990becade2c5c40df01
cpio_2.5.orig.tar.gz 181.1 KiB dbf79293d0cafa7d7a3a266c2b0b90c00d556e7b3185d4243c74153291da24c8
cpio_2.5-1.2ubuntu1.diff.gz 26.8 KiB 8aacdd057082491edf69b77da96cd77c8a77d714bf8c8b1d58cbf9a808415ec8

No changes file available.

Binary packages built by this source

cpio: No summary available for cpio in ubuntu breezy.

No description available for cpio in ubuntu breezy.