package/unzip: add security patch from Debian
authorSébastien Szymanski <sebastien.szymanski@armadeus.com>
Tue, 3 Sep 2019 09:20:24 +0000 (11:20 +0200)
committerPeter Korsgaard <peter@korsgaard.com>
Tue, 3 Sep 2019 20:57:08 +0000 (22:57 +0200)
commit8a1a7dff4f223b5f585ece8ec23929a0b7cf798c
treea2c69ec96fe4cc8027fb98b71f217337004a2f51
parentfffd528c32787cdc51a00ac02dd29c11ae541347
package/unzip: add security patch from Debian

Fix the URL and add a new patch. Quoting changelog [1]:

unzip (6.0-25) unstable; urgency=medium

  * Apply one more patch by Mark Adler:
  - Do not raise a zip bomb alert for a misplaced central directory.
    This should allow Firefox to build again. Closes: #932404.
    Reported by Peter Green. Hopefully CVE-2019-13232 is fixed now.

 -- Santiago Vila <sanvila@debian.org>  Sat, 27 Jul 2019 18:01:36 +0200

[1] https://sources.debian.org/data/main/u/unzip/6.0-25/debian/changelog

Signed-off-by: Sébastien Szymanski <sebastien.szymanski@armadeus.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/unzip/unzip.hash
package/unzip/unzip.mk