Debian Patches

Status for tre/0.8.0-8

Patch Description Author Forwarded Bugs Origin Last update
01-agrep-is-called-tre-agrep-here.patch agrep is called tre-agrep here Santiago Vila <sanvila@debian.org> no
02-added-de-po-translation.patch Added de.po translation Santiago Vila <sanvila@debian.org> no debian
03-cve-2016-8859.patch fix missing integer overflow checks in regexec buffer size computations

most of the possible overflows were already ruled out in practice by
regcomp having already succeeded performing larger allocations.
however at least the num_states*num_tags multiplication can clearly
overflow in practice. for safety, check them all, and use the proper
type, size_t, rather than int.

also improve comments, use calloc in place of malloc+memset, and
remove bogus casts.
Rich Felker <dalias@aerifal.cx> no 2016-10-06
04-sanitize-tre.pc.patch Sanitize tre.pc Santiago Vila <sanvila@debian.org> no
05-fix-tests-which-fail-when-sh-is-bash.patch Fix tests which fail when sh is bash
Fix: Add 'set -f' to agrep test script run-tests.sh to fix issue from Vogtinator PR#87.
Make corresponding changes to exitstatus.args and exitstatus.ok
Tom Rushworth <tbr@acm.org> no https://github.com/laurikari/tre/commit/466f2d31502731d70476db38c46268b898833055

All known versions for source package 'tre'

Links