tag 321927 patch thanks Hi security team, hi Santiago!
I fixed this in Ubuntu by this simple patch: http://patches.ubuntu.com/patches/unzip.CAN-2005-2475.diff It uses fchmod() instead of chmod() and moves the chmodding to the top of the function since the output file is already closed very early. Santiago, can you please send this to upstream? Please remember to add the CAN number to the changelog when you fix this. Thanks for considering and have a nice day! Martin -- Martin Pitt http://www.piware.de Ubuntu Developer http://www.ubuntu.com Debian Developer http://www.debian.org In a world without walls and fences, who needs Windows and Gates?
signature.asc
Description: Digital signature

