gnupg: security bump to version 1.4.18
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Thu, 17 Jul 2014 21:13:49 +0000 (18:13 -0300)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Thu, 17 Jul 2014 21:44:43 +0000 (23:44 +0200)
commit90bb58d74bcc8d7739b6ec8f6763033064b717ec
tree4a98cf370c604cdc601f7d2f2c7cb3b19be2c9fd
parent4ef1fb88faa3839f2209a251894abee37dd53c71
gnupg: security bump to version 1.4.18

Fixes CVE-2014-4617 (The do_uncompress function in g10/compress.c
allows context-dependent attackers to cause a denial of service
(infinite loop) via malformed compressed packets, as demonstrated by an
a3 01 5b ff byte sequence.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/gnupg/gnupg.mk