<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="592a9b28d8bb5f34d0edf0c2399959df"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="sledp3-bzip2-7169"
    timestamp="1285654703"
    engine="1.0">
  <yum:name>sledp3-bzip2</yum:name>
  <summary lang="en">Security update for bzip2</summary>
  <description lang="en">
This update fixes an integer overflow in the BZ2_decompress function of 
bzip2/libbz2. This can be exploited via a crafted archive to cause a denial 
of service or even execute arbitrary code. (CVE-2010-0405)

Security Issue reference:

    * CVE-2010-0405
      &lt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0405&gt;

</description>
  <yum:version ver="7169" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="bzip2" epoch="0" ver="1.0.3" rel="17.15.4" flags="EQ"/>
    <rpm:entry kind="atom" name="bzip2-32bit" epoch="0" ver="1.0.3" rel="17.15.4" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>bzip2</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="1.0.3" rel="17.15.4"/>
      <checksum type="sha" pkgid="YES">c83fedbc82fe917b1331b10cf81517e8de15dfd4</checksum>
      <time file="1285654705" build="1285654703"/>
      <size package="260089" installed="492207" archive="495360"/>
      <location xml:base="media://#1" href="suse/x86_64/bzip2-1.0.3-17.15.4.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="bzip2" epoch="0" ver="1.0.3" rel="17.15.4" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="bzip2"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>bzip2-32bit</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="1.0.3" rel="17.15.4"/>
      <checksum type="sha" pkgid="YES">41b163304ec620561e97e303fe859bff8c665a0b</checksum>
      <time file="1285654579" build="1285654578"/>
      <size package="54727" installed="142345" archive="143164"/>
      <location xml:base="media://#1" href="suse/x86_64/bzip2-32bit-1.0.3-17.15.4.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="bzip2-32bit" epoch="0" ver="1.0.3" rel="17.15.4" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="bzip2-32bit"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
  </atoms>
</patch>
