From fdefe7c3f619ca25dfd686906fc78aee4d95dadf4a0cf24dd41232daa81471d8 Mon Sep 17 00:00:00 2001 From: Dirk Mueller Date: Mon, 10 Aug 2020 07:44:04 +0000 Subject: [PATCH] Accepting request 824893 from home:AndreasStieger:branches:devel:libraries:c_c++ - update to 1.4.3: * Use of uninitialized memory in dump_entry_data_list() could have cause a heap buffer flow in mmdblookup [bsc#1175006] OBS-URL: https://build.opensuse.org/request/show/824893 OBS-URL: https://build.opensuse.org/package/show/devel:libraries:c_c++/libmaxminddb?expand=0&rev=17 --- libmaxminddb-1.4.2.tar.gz | 3 --- libmaxminddb-1.4.3.tar.gz | 3 +++ libmaxminddb.changes | 7 +++++++ libmaxminddb.spec | 4 ++-- 4 files changed, 12 insertions(+), 5 deletions(-) delete mode 100644 libmaxminddb-1.4.2.tar.gz create mode 100644 libmaxminddb-1.4.3.tar.gz diff --git a/libmaxminddb-1.4.2.tar.gz b/libmaxminddb-1.4.2.tar.gz deleted file mode 100644 index cbe6b52..0000000 --- a/libmaxminddb-1.4.2.tar.gz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:dd582aa971be23dee960ec33c67fb5fd38affba508e6f00ea75959dbd5aad156 -size 600664 diff --git a/libmaxminddb-1.4.3.tar.gz b/libmaxminddb-1.4.3.tar.gz new file mode 100644 index 0000000..2ca0475 --- /dev/null +++ b/libmaxminddb-1.4.3.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:a5fdf6c7b4880fdc7620f8ace5bd5cbe9f65650c9493034b5b9fc7d83551a439 +size 602272 diff --git a/libmaxminddb.changes b/libmaxminddb.changes index c9638e3..eca56c2 100644 --- a/libmaxminddb.changes +++ b/libmaxminddb.changes @@ -1,3 +1,10 @@ +------------------------------------------------------------------- +Fri Aug 7 16:14:00 UTC 2020 - Andreas Stieger + +- update to 1.4.3: + * Use of uninitialized memory in dump_entry_data_list() could have + cause a heap buffer flow in mmdblookup [bsc#1175006] + ------------------------------------------------------------------- Wed Nov 20 13:46:56 UTC 2019 - Dominique Leuenberger diff --git a/libmaxminddb.spec b/libmaxminddb.spec index 93facbf..2b858f6 100644 --- a/libmaxminddb.spec +++ b/libmaxminddb.spec @@ -1,7 +1,7 @@ # # spec file for package libmaxminddb # -# Copyright (c) 2019 SUSE LLC. +# Copyright (c) 2020 SUSE LLC # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -18,7 +18,7 @@ %define lname libmaxminddb0 Name: libmaxminddb -Version: 1.4.2 +Version: 1.4.3 Release: 0 Summary: C library for the MaxMind DB file format License: Apache-2.0