[BACK]Return to distinfo CVS log [TXT][DIR] Up to [cvs.NetBSD.org] / pkgsrc / archivers / p5-Archive-Tar

File: [cvs.NetBSD.org] / pkgsrc / archivers / p5-Archive-Tar / distinfo (download)

Revision 1.14, Fri Feb 1 11:59:03 2008 UTC (11 years, 1 month ago) by rhaen
Branch: MAIN
CVS Tags: pkgsrc-2008Q3-base, pkgsrc-2008Q3, pkgsrc-2008Q2-base, pkgsrc-2008Q2, pkgsrc-2008Q1-base, pkgsrc-2008Q1, cwrapper, cube-native-xorg-base, cube-native-xorg
Changes since 1.13: +4 -4 lines

- updated to 1.38
- ok'ed by rillig
ChangeLog:
* important changes in vesrion 1.38    14/12/2007:
- Promote 1.37_01 to stable.

* important changes in version 1.37_01 11/11/2007:
_ Address #30380: directory traversal vulnerability in Archive-Tar
  - Add $INSECURE_EXTRACT_MODE which defaults to 0, disallowing
    archives to extract files outside of cwd(). This is a backwards
    incompatible change from 1.36 and before.
  - Add a -I option to ptar to enable insecure extraction if needed

$NetBSD: distinfo,v 1.14 2008/02/01 11:59:03 rhaen Exp $

SHA1 (Archive-Tar-1.38.tar.gz) = f52b4928b839d0bb8f77e507a59ff46af816737e
RMD160 (Archive-Tar-1.38.tar.gz) = 908cf29622038cc526bcca98a65523e4cb445b8c
Size (Archive-Tar-1.38.tar.gz) = 42452 bytes