23620351 problem in UTILITY/BZIP s11u3-sru
authorRich Burridge <rich.burridge@oracle.com>
Thu, 23 Jun 2016 12:40:18 -0700
branchs11u3-sru
changeset 6275 caba7851f931
parent 6271 4e3569555a4b
child 6284 71199f3a4dcd
23620351 problem in UTILITY/BZIP
components/bzip2/patches/CVE-2016-3189.patch
--- /dev/null	Thu Jan 01 00:00:00 1970 +0000
+++ b/components/bzip2/patches/CVE-2016-3189.patch	Thu Jun 23 12:40:18 2016 -0700
@@ -0,0 +1,18 @@
+Fix for CVE-2016-3189.
+
+For more details see:
+
+https://bugzilla.redhat.com/show_bug.cgi?id=1319648
+
+Fix is already known upstream.
+
+--- bzip2-1.0.6/bzip2recover.c.orig	2016-06-20 14:21:27.313740691 -0700
++++ bzip2-1.0.6/bzip2recover.c	2016-06-20 14:22:04.258099956 -0700
[email protected]@ -457,6 +457,7 @@
+             bsPutUChar ( bsWr, 0x50 ); bsPutUChar ( bsWr, 0x90 );
+             bsPutUInt32 ( bsWr, blockCRC );
+             bsClose ( bsWr );
++            outFile = NULL;
+          }
+          if (wrBlock >= rbCtr) break;
+          wrBlock++;