News for package unzip

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 3.0 (quilt)
Source: unzip
Binary: unzip
Architecture: any
Version: 6.0-16+deb8u1
Maintainer: Santiago Vila <[email protected]>
Homepage: http://www.info-zip.org/UnZip.html
Standards-Version: 3.9.5
Build-Depends: libbz2-dev
Package-List:
 unzip deb utils optional arch=any
Checksums-Sha1:
 abf7de8a4018a983590ed6f5cbd990d4740f8a22 1376845 unzip_6.0.orig.tar.gz
 cf31bacbd1ed2a003c5b0fc0b00de74962998c9d 15372 unzip_6.0-16+deb8u1.debian.tar.xz
Checksums-Sha256:
 036d96991646d0449ed0aa952e4fbe21b476ce994abc276e49d30e686708bd37 1376845 unzip_6.0.orig.tar.gz
 e24d2a7f93e717ba69c5f1d8f68884cf0c20008e1d525268b0f6133bdc14c46a 15372 unzip_6.0-16+deb8u1.debian.tar.xz
Files:
 62b490407489521db863b523a7f86375 1376845 unzip_6.0.orig.tar.gz
 9585bf3617df6fc0a15e1b292701ed14 15372 unzip_6.0-16+deb8u1.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=UAei
-----END PGP SIGNATURE-----

Changes:
unzip (6.0-16+deb8u1) jessie-security; urgency=high

   * Non-maintainer upload by the Security Team.
   * Fix infinite loop when extracting password-protected archive.
     This is CVE-2015-7697. Closes: #802160.
   * Fix heap overflow when extracting password-protected archive.
     This is CVE-2015-7696. Closes: #802162.
   * Fix additional unsigned overflow on invalid input.

 -- Laszlo Boszormenyi (GCS) <[email protected]>  Thu, 22 Oct 2015 12:51:52 +0000