ELSA-2007-0203

ELSA-2007-0203 - Low unzip security and bug fix update

Type:SECURITY
Impact:LOW
Release Date:2007-05-17

Description


[5.51-9.EL4.5]
- Resolves: #230558
problem in patch4 (unzipped file permissions)

[ 5.51-8.EL4.5]
- fix problem with ~4GB files which are not compressed

[5.51-7.EL4.5]
- fix 164927 - TOCTOU issue in unzip
- fix 178960 - unzip long filename buffer overflow
- fix 199104 - add large file support
(return Lon's ~4GB patch - fixed symlink problem)


Related CVEs


CVE-2005-2475
CVE-2005-4667

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 4 (i386)unzip-5.51-9.EL4.5.i386.rpmd8cd950bc5eaa377821507a5bd24ad18a1d37e72e155f542b54c08a2d464988d-el4_i386_latest
unzip-5.51-9.EL4.5.i386.rpmd8cd950bc5eaa377821507a5bd24ad18a1d37e72e155f542b54c08a2d464988d-el4_u5_i386_base
unzip-5.51-9.EL4.5.i386.rpmd8cd950bc5eaa377821507a5bd24ad18a1d37e72e155f542b54c08a2d464988d-el4_u6_i386_base
Oracle Linux 4 (ia64)unzip-5.51-9.EL4.5.ia64.rpmab52e7e756d83de04dd4bc9bd19b0182b60a70c4092bce85e1d2bec89afa12cd-el4_ia64_latest
unzip-5.51-9.EL4.5.ia64.rpmab52e7e756d83de04dd4bc9bd19b0182b60a70c4092bce85e1d2bec89afa12cd-el4_u6_ia64_base
Oracle Linux 4 (x86_64)unzip-5.51-9.EL4.5.x86_64.rpmbed3dce1f24bf203bf17a1dda1a87e7f3952b07cd5ed1136b77ffab6ad7166da-el4_u5_x86_64_base
unzip-5.51-9.EL4.5.x86_64.rpmbed3dce1f24bf203bf17a1dda1a87e7f3952b07cd5ed1136b77ffab6ad7166da-el4_u6_x86_64_base
unzip-5.51-9.EL4.5.x86_64.rpmbed3dce1f24bf203bf17a1dda1a87e7f3952b07cd5ed1136b77ffab6ad7166da-el4_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete