[Bug 859525] New: crash when libzip opens a invalid zip file
https://bugzilla.novell.com/show_bug.cgi?id=859525 https://bugzilla.novell.com/show_bug.cgi?id=859525#c0 Summary: crash when libzip opens a invalid zip file Classification: openSUSE Product: openSUSE 13.1 Version: Final Platform: x86-64 OS/Version: openSUSE 13.1 Status: NEW Severity: Critical Priority: P5 - None Component: Development AssignedTo: bnc-team-screening@forge.provo.novell.com ReportedBy: matz.fuchs@gmx.at QAContact: qa-bugs@suse.de Found By: --- Blocker: --- User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:26.0) Gecko/20100101 Firefox/26.0 I use the function zip_open() of libzip to open an invalid zip file. Instead of returning an null pointer the function causes a segmentation fault. The installed libzip is part of the package libzip2, version 0.11.1-3.1.2. The invalid zip file which demonstrates the bug is a simple text file containing the word 'nonsense'. According to the unit tests I run on the openSUSE Build Service the problem does not occur on older versions (before 13.1) of openSUSE. Reproducible: Always Steps to Reproduce: 1.Create a file containing the word 'nonsense'. 2.Build a program which calls zip_open() on the this file. Actual Results: The program crashes Expected Results: Return a null pointer -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=859525
https://bugzilla.novell.com/show_bug.cgi?id=859525#c1
Bernhard Wiedemann
https://bugzilla.novell.com/show_bug.cgi?id=859525
https://bugzilla.novell.com/show_bug.cgi?id=859525#c2
--- Comment #2 from Bernhard Wiedemann
https://bugzilla.novell.com/show_bug.cgi?id=859525
https://bugzilla.novell.com/show_bug.cgi?id=859525#c
Thorsten Behrens
https://bugzilla.novell.com/show_bug.cgi?id=859525
https://bugzilla.novell.com/show_bug.cgi?id=859525#c4
--- Comment #4 from Thorsten Behrens
https://bugzilla.novell.com/show_bug.cgi?id=859525
https://bugzilla.novell.com/show_bug.cgi?id=859525#c5
--- Comment #5 from Bernhard Wiedemann
https://bugzilla.novell.com/show_bug.cgi?id=859525
https://bugzilla.novell.com/show_bug.cgi?id=859525#c6
Thorsten Behrens
https://bugzilla.novell.com/show_bug.cgi?id=859525
https://bugzilla.novell.com/show_bug.cgi?id=859525#c7
--- Comment #7 from Bernhard Wiedemann
https://bugzilla.novell.com/show_bug.cgi?id=859525
https://bugzilla.novell.com/show_bug.cgi?id=859525#c8
--- Comment #8 from Swamp Workflow Management
participants (1)
-
bugzilla_noreply@novell.com