From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.2.5 (2008-06-10) on sa.int.altlinux.org X-Spam-Level: X-Spam-Status: No, score=-2.6 required=5.0 tests=BAYES_00,SPF_PASS autolearn=ham version=3.2.5 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:date:from:to:subject :message-id:references:mime-version:content-type:content-disposition :in-reply-to:user-agent; bh=Xh6GaiEfm7+ufxMa5LGgyr2FXy8GMkHc9+8+Pw8UcOg=; b=jD41vtnxd4uM9Ft1bOKJbnZxZYz08daDeu7YW+zJucZjcV2QTvdQqwj/TNvyK4gu4i eYolt+uvoPiJDz41g+CT4iYHGwKKwY5w7EsSaSOIVxJjhgNJaX1dlkSzIPaDtfGT9+F5 NYLZdiZj7RrZw3qnqkX2ejnFVBSxWoGdNemCI= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=date:from:to:subject:message-id:references:mime-version :content-type:content-disposition:in-reply-to:user-agent; b=VdaaiBkKM5ixjqezbRww6/BRc9VfbJGCDUidwt/Bc2dvnUW+QSl+SP3Za/sJNSO+T1 gQqM1SZ4DBjxUKQaqAOcVOn/3RdzB0FTiZcgaIbKob9DW9F1qDwfp6iEI6TV53ldxQxL 1NaulT8Ip3TLWsxNiineoKMjR1PnjnJ2uEyOE= Date: Tue, 14 Jul 2009 21:37:34 +0400 From: Vladimir Lettiev To: ALT Linux Team development discussions Message-ID: <20090714173734.GA11410@ubuntu> References: <20090714094656.1939F196629B@ssh.git.orion.altlinux.org> <20090714105416.GB1515@wo.int.altlinux.org> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="7JfCtLOvnd9MIVvH" Content-Disposition: inline In-Reply-To: <20090714105416.GB1515@wo.int.altlinux.org> User-Agent: Mutt/1.5.18 (2008-05-17) Subject: Re: [devel] [SCM] packages/gnupg2: heads/master X-BeenThere: devel@lists.altlinux.org X-Mailman-Version: 2.1.12 Precedence: list Reply-To: ALT Linux Team development discussions List-Id: ALT Linux Team development discussions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 14 Jul 2009 17:38:30 -0000 Archived-At: List-Archive: List-Post: --7JfCtLOvnd9MIVvH Content-Type: text/plain; charset=utf-8 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Tue, Jul 14, 2009 at 02:54:16PM +0400, Dmitry V. Levin wrote: > On Tue, Jul 14, 2009 at 01:46:56PM +0400, Sergey V. Turchin wrote: > > --- /dev/null > > +++ b/gnupg-2.0.12-alt-fix-possible-overflow.patch > > @@ -0,0 +1,11 @@ > > +--- gnupg-2.0.12/g10/keygen.c~ 2009-07-13 17:27:14 +0400 > > ++++ gnupg-2.0.12/g10/keygen.c 2009-07-14 13:33:08 +0400 > > +@@ -85,7 +85,7 @@ struct para_data_s { > > + u32 creation; > > + unsigned int usage; > > + struct revocation_key revkey; > > +- char value[1]; ^^^^^^^^^^^^^ > > ++ char value[21]; > > + } u; > > + }; > > +=20 >=20 > =D0=9F=D0=BE=D1=81=D0=BB=D0=B5 =D1=8D=D1=82=D0=BE=D0=B3=D0=BE =D0=B8=D0= =B7=D0=BC=D0=B5=D0=BD=D0=B5=D0=BD=D0=B8=D1=8F gnupg2 =D0=BD=D0=B0=D1=87=D0= =BD=D1=91=D1=82 =D0=BF=D0=B0=D0=B4=D0=B0=D1=82=D1=8C. =D0=9A=D0=B0=D0=BA =D1=8F =D0=BF=D0=BE=D0=BD=D0=B8=D0=BC=D0=B0=D1=8E, =D1= =8D=D1=82=D0=BE =D0=BE=D1=87=D0=B5=D0=BD=D1=8C =D0=BF=D0=BE=D0=BF=D1=83=D0= =BB=D1=8F=D1=80=D0=BD=D1=8B=D0=B9 =D0=BF=D1=80=D0=B8=D1=91=D0=BC =D0=B4=D0= =BB=D1=8F =D1=81=D0=BE=D0=B7=D0=B4=D0=B0=D0=BD=D0=B8=D1=8F =D0=BF=D0=BE=D0= =BB=D1=8F =D0=BF=D0=B5=D1=80=D0=B5=D0=BC=D0=B5=D0=BD=D0=BD=D0=BE=D0=B9 =D0= =B4=D0=BB=D0=B8=D0=BD=D1=8B =D0=B2 =D1=81=D1=82=D1=80=D1=83=D0=BA=D1=82=D1= =83=D1=80=D0=B5. =D0=9F=D0=B0=D0=BC=D1=8F=D1=82=D1=8C =D0=B2=D1=8B=D0=B4=D0=B5=D0=BB=D1=8F= =D0=B5=D1=82=D1=81=D1=8F =D0=BA=D0=B0=D0=BA =D1=81=D1=83=D0=BC=D0=BC=D0=B0 = sizeof(=D1=81=D1=82=D1=80=D1=83=D0=BA=D1=82=D1=83=D1=80=D0=B0)+strlen(=D0= =B4=D0=B0=D0=BD=D0=BD=D1=8B=D0=B5), =D0=B0 =D0=BF=D0=BE=D1=82=D0=BE=D0=BC = =D0=B2 =D0=BF=D0=BE=D0=BB=D0=B5, =D0=BA=D0=BE=D1=82=D0=BE=D1=80=D0=BE=D0=B5 =D0=BE=D0=B1=D1=8A=D1=8F=D0=B2=D0=BB=D0=B5=D0=BD=D0=BE =D1=80=D0=B0=D0=B7= =D0=BC=D0=B5=D1=80=D0=BE=D0=BC =D0=B2 =D0=BE=D0=B4=D0=B8=D0=BD =D0=B1=D0=B0= =D0=B9=D1=82 =D0=B7=D0=B0=D0=B3=D0=BE=D0=BD=D1=8F=D1=8E=D1=82=D1=81=D1=8F = =D0=B4=D0=B0=D0=BD=D0=BD=D1=8B=D0=B5 =D0=B1=D0=BE=D0=BB=D1=8C=D1=88=D0=B5= =D0=B9 =D0=B4=D0=BB=D0=B8=D0=BD=D1=8B =D0=B8 =D1=8D=D1=82=D0=BE =D1=81=D1= =80=D0=B0=D0=B1=D0=B0=D1=82=D1=8B=D0=B2=D0=B0=D0=B5=D1=82 =D1=82.=D0=BA. =D0=BF=D0=B0=D0=BC=D1=8F=D1=82=D0=B8 =D0=B2=D1=8B=D0=B4=D0=B5=D0=BB=D0=B5= =D0=BD=D0=BD=D0=BE =D0=B4=D0=BE=D1=81=D1=82=D0=B0=D1=82=D0=BE=D1=87=D0=BD= =D0=BE, =D1=85=D0=BE=D1=82=D1=8F =D1=81 =D1=82=D0=BE=D1=87=D0=BA=D0=B8 =D0= =B7=D1=80=D0=B5=D0=BD=D0=B8=D1=8F =D0=BA=D0=BE=D0=BC=D0=BF=D0=B8=D0=BB=D1= =8F=D1=82=D0=BE=D1=80=D0=B0 =D0=B1=D1=83=D0=B4=D0=B5=D1=82 =D0=BF=D0=B5=D1= =80=D0=B5=D0=BF=D0=BE=D0=BB=D0=BD=D0=B5=D0=BD=D0=B8=D0=B5. =D0=9A=D0=B0=D0=BA =D1=82=D0=B5=D0=BF=D0=B5=D1=80=D1=8C =D0=B1=D1=8B=D1=82= =D1=8C? =D0=9A=D0=B0=D0=BA=D0=BE=D0=B9 =D0=BF=D1=80=D0=B0=D0=B2=D0=B8=D0=BB= =D1=8C=D0=BD=D1=8B=D0=B9 =D0=BF=D1=83=D1=82=D1=8C =D1=80=D0=B5=D1=88=D0=B5= =D0=BD=D0=B8=D1=8F =D1=82=D0=B0=D0=BA=D0=BE=D0=B9 =D0=B7=D0=B0=D0=B4=D0=B0= =D1=87=D0=B8? --=20 Vladimir Lettiev aka crux --7JfCtLOvnd9MIVvH Content-Type: application/pgp-signature; name="signature.asc" Content-Description: Digital signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iEYEARECAAYFAkpcwl4ACgkQHjuOqBHxmZUUZwCffdgJM+w6WfQxxpd/P0vPVN24 uBMAoJkRGo0AgwZ92guODpiJupcUfDvu =Wvxk -----END PGP SIGNATURE----- --7JfCtLOvnd9MIVvH--