Bug#775687: libmspack: CHM decompression: another pointer arithmetic overflow

2015-01-29 Thread Sebastian Andrzej Siewior
0.5alpha has been just released [0] with this issue fixed. If you package that one you get rid of all currently known bugs :) [0] http://www.cabextract.org.uk/libmspack/libmspack-0.5alpha.tar.gz Sebastian -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "un

Bug#775687: libmspack: CHM decompression: another pointer arithmetic overflow

2015-01-18 Thread Stuart Caie
On 18/01/2015 22:00, Sebastian Andrzej Siewior wrote: On 2015-01-18 18:59:33 [+0100], Jakub Wilk wrote: Sorry, it's me again! libmspack crashes on the attached file: As I've seen your ubsan reports, I assumed you were done. Wrong this was. $ gpg -d < crash.chm.asc > crash.chm $ test/chmd_md5

Bug#775687: libmspack: CHM decompression: another pointer arithmetic overflow

2015-01-18 Thread Sebastian Andrzej Siewior
On 2015-01-18 18:59:33 [+0100], Jakub Wilk wrote: > Sorry, it's me again! libmspack crashes on the attached file: As I've seen your ubsan reports, I assumed you were done. Wrong this was. > $ gpg -d < crash.chm.asc > crash.chm > $ test/chmd_md5 crash.chm > *** crash.chm > > but it'd be better to