pkgsrc/devel/zlib
reed f381b34347 Added two patches for fixing possible security issue.
The CVS security ID is CAN-2004-0797.

The fix is same as used by OpenBSD, Debian and Gentoo.
(Didn't see any reference to issue on zlib webpages.)

The OpenBSD announcement "zlib reliabilty fix" says:
"could allow an attacker to crash programs linked
with it."

And the Gentoo announcement says "zlib contains a bug in the handling
of errors in the inflate() and inflateBack() functions. ... An
attacker could exploit this vulnerability to launch a Denial of
Service attack on any application using the zlib library."

PKGREVISION is bumped and BUILDLINK_RECOMMENDED.zlib added to
buildlink3.mk file.
2004-08-31 23:16:23 +00:00
..
patches Added two patches for fixing possible security issue. 2004-08-31 23:16:23 +00:00
buildlink3.mk Added two patches for fixing possible security issue. 2004-08-31 23:16:23 +00:00
builtin.mk Match the template builtin.mk file in bsd.builtin.mk, and make the two 2004-03-29 05:43:28 +00:00
DESCR
distinfo Added two patches for fixing possible security issue. 2004-08-31 23:16:23 +00:00
Makefile Added two patches for fixing possible security issue. 2004-08-31 23:16:23 +00:00
PLIST Changes 1.2.1: 2004-01-12 21:19:50 +00:00