[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#922385: stretch-pu: package gsoap/2.8.35-4+deb9u2



Control: tags -1 + moreinfo

On 2019-02-15 10:12, Mattias Ellert wrote:
This is a proposal to fix CVE-2019-7659 in stretch.

The update also addresses one additional advisory published by the
upstream developers.

+-soap_encode_url(const char *s, char *t, size_t len)
++soap_encode_url(const char *s, char *t, int len)

If soap_encode_url is a public symbol, that's an ABI break - int and size_t may well not be the same size, but they're definitely different signedness.

Regards,

Adam


Reply to: