public inbox for gcc-bugs@sourceware.org
help / color / mirror / Atom feed
* [Bug other/15697] New: included zlib gzprintf() vulnerability
@ 2004-05-28 19:17 fcusack at fcusack dot com
  2004-05-28 19:18 ` [Bug other/15697] " fcusack at fcusack dot com
                   ` (4 more replies)
  0 siblings, 5 replies; 6+ messages in thread
From: fcusack at fcusack dot com @ 2004-05-28 19:17 UTC (permalink / raw)
  To: gcc-bugs

http://www.securityfocus.com/archive/1/312869

nothing in gcc calls gzprintf(), so things are ok, but it's easy
to fix so I suggest patching.

-- 
           Summary: included zlib gzprintf() vulnerability
           Product: gcc
           Version: 3.4.0
            Status: UNCONFIRMED
          Severity: normal
          Priority: P2
         Component: other
        AssignedTo: unassigned at gcc dot gnu dot org
        ReportedBy: fcusack at fcusack dot com
                CC: gcc-bugs at gcc dot gnu dot org
  GCC host triplet: *-*-*


http://gcc.gnu.org/bugzilla/show_bug.cgi?id=15697


^ permalink raw reply	[flat|nested] 6+ messages in thread

* [Bug other/15697] included zlib gzprintf() vulnerability
  2004-05-28 19:17 [Bug other/15697] New: included zlib gzprintf() vulnerability fcusack at fcusack dot com
@ 2004-05-28 19:18 ` fcusack at fcusack dot com
  2004-05-28 19:25 ` pinskia at gcc dot gnu dot org
                   ` (3 subsequent siblings)
  4 siblings, 0 replies; 6+ messages in thread
From: fcusack at fcusack dot com @ 2004-05-28 19:18 UTC (permalink / raw)
  To: gcc-bugs


------- Additional Comments From fcusack at fcusack dot com  2004-05-28 01:56 -------
Created an attachment (id=6408)
 --> (http://gcc.gnu.org/bugzilla/attachment.cgi?id=6408&action=view)
fix gzprintf() buffer overflow


-- 


http://gcc.gnu.org/bugzilla/show_bug.cgi?id=15697


^ permalink raw reply	[flat|nested] 6+ messages in thread

* [Bug other/15697] included zlib gzprintf() vulnerability
  2004-05-28 19:17 [Bug other/15697] New: included zlib gzprintf() vulnerability fcusack at fcusack dot com
  2004-05-28 19:18 ` [Bug other/15697] " fcusack at fcusack dot com
@ 2004-05-28 19:25 ` pinskia at gcc dot gnu dot org
  2004-05-28 19:31 ` pinskia at gcc dot gnu dot org
                   ` (2 subsequent siblings)
  4 siblings, 0 replies; 6+ messages in thread
From: pinskia at gcc dot gnu dot org @ 2004-05-28 19:25 UTC (permalink / raw)
  To: gcc-bugs


------- Additional Comments From pinskia at gcc dot gnu dot org  2004-05-28 01:58 -------
I am thinking this can be closed as a dup of bug 14856 which says to update the bundled version of 
zlib.

-- 
           What    |Removed                     |Added
----------------------------------------------------------------------------
  BugsThisDependsOn|                            |14856
             Status|UNCONFIRMED                 |NEW
     Ever Confirmed|                            |1
   Last reconfirmed|0000-00-00 00:00:00         |2004-05-28 01:58:56
               date|                            |


http://gcc.gnu.org/bugzilla/show_bug.cgi?id=15697


^ permalink raw reply	[flat|nested] 6+ messages in thread

* [Bug other/15697] included zlib gzprintf() vulnerability
  2004-05-28 19:17 [Bug other/15697] New: included zlib gzprintf() vulnerability fcusack at fcusack dot com
  2004-05-28 19:18 ` [Bug other/15697] " fcusack at fcusack dot com
  2004-05-28 19:25 ` pinskia at gcc dot gnu dot org
@ 2004-05-28 19:31 ` pinskia at gcc dot gnu dot org
  2004-06-17  3:51 ` fcusack at fcusack dot com
  2004-10-11 18:47 ` tromey at gcc dot gnu dot org
  4 siblings, 0 replies; 6+ messages in thread
From: pinskia at gcc dot gnu dot org @ 2004-05-28 19:31 UTC (permalink / raw)
  To: gcc-bugs


------- Additional Comments From pinskia at gcc dot gnu dot org  2004-05-28 02:01 -------
Please send patches to gcc-patches@gcc.gnu.org after reading <http://gcc.gnu.org/contribute.html>.

-- 


http://gcc.gnu.org/bugzilla/show_bug.cgi?id=15697


^ permalink raw reply	[flat|nested] 6+ messages in thread

* [Bug other/15697] included zlib gzprintf() vulnerability
  2004-05-28 19:17 [Bug other/15697] New: included zlib gzprintf() vulnerability fcusack at fcusack dot com
                   ` (2 preceding siblings ...)
  2004-05-28 19:31 ` pinskia at gcc dot gnu dot org
@ 2004-06-17  3:51 ` fcusack at fcusack dot com
  2004-10-11 18:47 ` tromey at gcc dot gnu dot org
  4 siblings, 0 replies; 6+ messages in thread
From: fcusack at fcusack dot com @ 2004-06-17  3:51 UTC (permalink / raw)
  To: gcc-bugs


------- Additional Comments From fcusack at fcusack dot com  2004-06-17 03:51 -------


*** This bug has been marked as a duplicate of 14856 ***

-- 
           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|NEW                         |RESOLVED
         Resolution|                            |DUPLICATE


http://gcc.gnu.org/bugzilla/show_bug.cgi?id=15697


^ permalink raw reply	[flat|nested] 6+ messages in thread

* [Bug other/15697] included zlib gzprintf() vulnerability
  2004-05-28 19:17 [Bug other/15697] New: included zlib gzprintf() vulnerability fcusack at fcusack dot com
                   ` (3 preceding siblings ...)
  2004-06-17  3:51 ` fcusack at fcusack dot com
@ 2004-10-11 18:47 ` tromey at gcc dot gnu dot org
  4 siblings, 0 replies; 6+ messages in thread
From: tromey at gcc dot gnu dot org @ 2004-10-11 18:47 UTC (permalink / raw)
  To: gcc-bugs



-- 
Bug 15697 depends on bug 14856, which changed state.

Bug 14856 Summary: Update bundled zlib
http://gcc.gnu.org/bugzilla/show_bug.cgi?id=14856

           What    |Old Value                   |New Value
----------------------------------------------------------------------------
             Status|NEW                         |RESOLVED
         Resolution|                            |FIXED

http://gcc.gnu.org/bugzilla/show_bug.cgi?id=15697


^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2004-10-11 18:47 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2004-05-28 19:17 [Bug other/15697] New: included zlib gzprintf() vulnerability fcusack at fcusack dot com
2004-05-28 19:18 ` [Bug other/15697] " fcusack at fcusack dot com
2004-05-28 19:25 ` pinskia at gcc dot gnu dot org
2004-05-28 19:31 ` pinskia at gcc dot gnu dot org
2004-06-17  3:51 ` fcusack at fcusack dot com
2004-10-11 18:47 ` tromey at gcc dot gnu dot org

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).