Bug#1051232: bookworm-pu: package 7zip/23.01+dfsg-3~deb12u1
- To: YOKOTA Hiroshi <yokota.hgml@gmail.com>, 1051232@bugs.debian.org
- Subject: Bug#1051232: bookworm-pu: package 7zip/23.01+dfsg-3~deb12u1
- From: Jonathan Wiltshire <jmw@debian.org>
- Date: Sat, 7 Oct 2023 12:06:05 +0100
- Message-id: <ZSE7nR6o1mK/4ARP@powdarrmonkey.net>
- Reply-to: Jonathan Wiltshire <jmw@debian.org>, 1051232@bugs.debian.org
- In-reply-to: <169385426720.99339.15820086512918755552.reportbug@loadstone.darkstar.local>
- References: <169385426720.99339.15820086512918755552.reportbug@loadstone.darkstar.local> <169385426720.99339.15820086512918755552.reportbug@loadstone.darkstar.local>
Control: tag -1 moreinfo
On Tue, Sep 05, 2023 at 04:04:27AM +0900, YOKOTA Hiroshi wrote:
> [ Reason ]
> 1. Fix security issue
> CVE-2023-31102: https://www.zerodayinitiative.com/advisories/ZDI-23-1165/
> CVE-2023-40481: https://www.zerodayinitiative.com/advisories/ZDI-23-1164/
>
> 2. Use 7zip-rar package for RAR archives.
> 7zip-rar requires 7zip >= 22.01-9
The diff you attached is unreviewable:
979 files changed, 40347 insertions(+), 25060 deletions(-)
Please prepare targetted fixes for the security issues.
Thanks,
--
Jonathan Wiltshire jmw@debian.org
Debian Developer http://people.debian.org/~jmw
4096R: 0xD3524C51 / 0A55 B7C5 1223 3942 86EC 74C3 5394 479D D352 4C51
ed25519/0x196418AAEB74C8A1: CA619D65A72A7BADFC96D280196418AAEB74C8A1
Reply to: