SHA256
1
0
forked from pool/discount

- Update changelog with references to security issues fixed

* fixes:
    + boo#1094809 CVE-2018-11468 heap-based buffer over-read __mkd_trim_line function in mkdio.c
    + boo#1098252 CVE-2018-12495 heap-based buffer over-read via a crafted file

OBS-URL: https://build.opensuse.org/package/show/Publishing/discount?expand=0&rev=22
This commit is contained in:
Martin Pluskal 2019-01-07 14:46:37 +00:00 committed by Git OBS Bridge
parent 1f5f7bd581
commit e194eb06e0
2 changed files with 9 additions and 1 deletions

View File

@ -1,8 +1,16 @@
-------------------------------------------------------------------
Mon Jan 7 14:44:33 UTC 2019 - Martin Pluskal <mpluskal@suse.com>
- Update changelog with references to security issues fixed
-------------------------------------------------------------------
Wed Oct 17 07:24:36 UTC 2018 - Martin Pluskal <mpluskal@suse.com>
- Update to version 2.2.4:
* No changelog provided
* fixes:
+ boo#1094809 CVE-2018-11468 heap-based buffer over-read __mkd_trim_line function in mkdio.c
+ boo#1098252 CVE-2018-12495 heap-based buffer over-read via a crafted file
-------------------------------------------------------------------
Mon Jun 25 09:11:13 UTC 2018 - mpluskal@suse.com

View File

@ -1,7 +1,7 @@
#
# spec file for package discount
#
# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany.
# Copyright (c) 2019 SUSE LINUX GmbH, Nuernberg, Germany.
#
# All modifications and additions to the file contributed by third parties
# remain the property of their copyright owners, unless otherwise agreed