forked from pool/netcdf
- Fix: * CVE-2019-20007 https://sourceforge.net/p/ezxml/bugs/13 * CVE-2019-20006 https://sourceforge.net/p/ezxml/bugs/15 * CVE-2019-20201 https://sourceforge.net/p/ezxml/bugs/16 * CVE-2019-20202 https://sourceforge.net/p/ezxml/bugs/17 * CVE-2019-20199 https://sourceforge.net/p/ezxml/bugs/18 * CVE-2019-20200 https://sourceforge.net/p/ezxml/bugs/19 * CVE-2019-20198 https://sourceforge.net/p/ezxml/bugs/20 * CVE-2021-26221 https://sourceforge.net/p/ezxml/bugs/21 * CVE-2021-26222 https://sourceforge.net/p/ezxml/bugs/22 * CVE-2021-30485 https://sourceforge.net/p/ezxml/bugs/25 * CVE-2021-31229 https://sourceforge.net/p/ezxml/bugs/26 * CVE-2021-31347 & * CVE-2021-31348 https://sourceforge.net/p/ezxml/bugs/27 * CVE-2021-31598 https://sourceforge.net/p/ezxml/bugs/28 (bsc#1191856) Note: * CVE-2021-26220 https://sourceforge.net/p/ezxml/bugs/23 not relevant for netcdf: code isn't used. * CVE-2019-20005 https://sourceforge.net/p/ezxml/bugs/14 Issue cannot be reproduced and no patch is available upstream. Added: * Fix-CVE-2021-30485-bug-25.patch * Fix-CVE-2021-31229-bug-26-CVE-2019-20201-bug-16-CVE-2019-20198-bug-20.patch * Fix-CVE-2021-31347-bug-27.patch * Fix-for-CVE-2019-20006-CVE-2019-20202-CVE-2021-31598-ezxml-bug-15-17-28.patch * Fix-for-CVE-2019-20007-ezxml-bug-13.patch * Fix-for-CVE-2019-20199-ezxml-bug-18.patch * Fix-for-CVE-2019-20200-ezxml-bug-19.patch * Fix-for-CVE-2021-26221-ezxml-bug-21.patch OBS-URL: https://build.opensuse.org/request/show/927323 OBS-URL: https://build.opensuse.org/package/show/science/netcdf?expand=0&rev=120
30 lines
1.2 KiB
Diff
30 lines
1.2 KiB
Diff
From: Egbert Eich <eich@suse.com>
|
|
Date: Sat Jul 10 10:43:10 2021 +0200
|
|
Subject: val_NC_check_voff(): Fix uninitialized variable warning
|
|
Patch-mainline: Not yet
|
|
Git-repo: https://github.com/Unidata/netcdf-c
|
|
Git-commit: 8b6a94698ff2a862b0188c8c74c9832c967e76f1
|
|
References:
|
|
|
|
Make variables used in error message match the condition that triggered
|
|
the message.
|
|
|
|
Signed-off-by: Egbert Eich <eich@suse.com>
|
|
Signed-off-by: Egbert Eich <eich@suse.de>
|
|
---
|
|
ncdump/ncvalidator.c | 2 +-
|
|
1 file changed, 1 insertion(+), 1 deletion(-)
|
|
diff --git a/ncdump/ncvalidator.c b/ncdump/ncvalidator.c
|
|
index 3cb6353f..37d7de06 100644
|
|
--- a/ncdump/ncvalidator.c
|
|
+++ b/ncdump/ncvalidator.c
|
|
@@ -2075,7 +2075,7 @@ val_NC_check_voff(NC *ncp)
|
|
|
|
if (ncp->begin_rec < prev_off) {
|
|
if (verbose) printf("Error:\n");
|
|
- if (verbose) printf("\tRecord variable section begin offset (%lld) is less than fixed-size variable section end offset (%lld)\n", varp->begin, prev_off);
|
|
+ if (verbose) printf("\tRecord variable section begin offset (%lld) is less than fixed-size variable section end offset (%lld)\n", ncp->begin_rec, prev_off);
|
|
nerrs++;
|
|
DEBUG_ASSIGN_ERROR(status, NC_ENOTNC)
|
|
}
|