* [PATCH] lzo: Update to 2.09
@ 2016-04-18 7:07 Alexander Marx
0 siblings, 0 replies; only message in thread
From: Alexander Marx @ 2016-04-18 7:07 UTC (permalink / raw)
To: development
[-- Attachment #1: Type: text/plain, Size: 1553 bytes --]
Changes in 2.09 (04 Feb 2015)
* Work around gcc bug #64516 that could affect architectures like
armv4, armv5 and sparc.
Changes in 2.08 (29 Jun 2014)
* Updated the Autoconf scripts to fix some reported build problems.
* Added CMake build support.
* Fixed lzo_init() on big-endian architectures like Sparc.
Changes in 2.07 (25 Jun 2014)
* Fixed a potential integer overflow condition in the "safe" decompressor
variants which could result in a possible buffer overrun when
processing maliciously crafted compressed input data.
Fortunately this issue only affects 32-bit systems and also can only happen
if you use uncommonly huge buffer sizes where you have to decompress more
than 16 MiB (> 2^24 bytes) untrusted compressed bytes within a single
function call, so the practical implications are limited.
POTENTIAL SECURITY ISSUE. CVE-2014-4607.
* Removed support for ancient configurations like 16-bit "huge" pointers -
LZO now requires a flat 32-bit or 64-bit memory model.
* Assorted cleanups.
Signed-off-by: Alexander Marx <alexander.marx(a)ipfire.org>
---
lzo/lzo.nm | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/lzo/lzo.nm b/lzo/lzo.nm
index 71696af..7bd25af 100644
--- a/lzo/lzo.nm
+++ b/lzo/lzo.nm
@@ -4,7 +4,7 @@
###############################################################################
name = lzo
-version = 2.06
+version = 2.09
release = 1
groups = Applications/Compression
--
2.6.3
^ permalink raw reply [flat|nested] only message in thread
only message in thread, other threads:[~2016-04-18 7:07 UTC | newest]
Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2016-04-18 7:07 [PATCH] lzo: Update to 2.09 Alexander Marx
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox