[Bug 1957077] Re: SIGSEGV during processing of unicode string

2022-04-11 Thread Mathew Hodson
** Changed in: unzip (Ubuntu) Importance: Undecided => Low -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1957077 Title: SIGSEGV during processing of unicode string To manage notifications about

[Bug 1957077] Re: SIGSEGV during processing of unicode string

2022-03-11 Thread Seth Arnold
** Changed in: unzip (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1957077 Title: SIGSEGV during processing of unicode string To manage notifications about

[Bug 1957077] Re: SIGSEGV during processing of unicode string

2022-01-27 Thread Salvatore Bonaccorso
According to https://bugzilla.redhat.com/show_bug.cgi?id=2044583 this is CVE-2021-4217. ** Bug watch added: Red Hat Bugzilla #2044583 https://bugzilla.redhat.com/show_bug.cgi?id=2044583 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-4217 -- You received this bug

[Bug 1957077] Re: SIGSEGV during processing of unicode string

2022-01-17 Thread Ubuntu Foundations Team Bug Bot
The attachment "0001-Fix-null-pointer-dereference-and-use-of- uninitialized-data.patch" seems to be a patch. If it isn't, please remove the "patch" flag from the attachment, remove the "patch" tag, and if you are a member of the ~ubuntu-reviewers, unsubscribe the team. [This is an automated

[Bug 1957077] Re: SIGSEGV during processing of unicode string

2022-01-17 Thread Nils
I attached a fix for the reported issue. However, since I am not familiar with unzip, someone should review it. Thanks! ** Patch added: "0001-Fix-null-pointer-dereference-and-use-of-uninitialized-data.patch"

[Bug 1957077] Re: SIGSEGV during processing of unicode string

2022-01-16 Thread wicked
There is no patch for this issue? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1957077 Title: SIGSEGV during processing of unicode string To manage notifications about this bug go to:

[Bug 1957077] Re: SIGSEGV during processing of unicode string

2022-01-14 Thread Nils
The attached attachment.zip file contains the bug triggering payload and a script to reproduce the bug via a prebuilt docker image. ** Attachment removed: "Please extract, this contains the crashing input besides other files helpful for reproduction."

[Bug 1957077] Re: SIGSEGV during processing of unicode string

2022-01-14 Thread Nils
** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1957077 Title: SIGSEGV during processing of unicode string To manage