There is a new pull request by crtxcr against master on the void-packages repository https://github.com/crtxcr/void-packages unzip_cves https://github.com/void-linux/void-packages/pull/41269 unzip: sync patches from Fedora etc. Sync a number of (CVE-related) patches from other distros: unzip-zipbomb-part{4,5,6}.patch: Fedora CVE-2021-4217.patch: Archlinux CVE-2022-0529.patch,CVE-2022-0530.patch: Ubuntu #### Testing the changes - I tested the changes in this PR: **briefly** #### Local build testing - I built this PR locally for my native architecture, (x86_64-glibc) A patch file from https://github.com/void-linux/void-packages/pull/41269.patch is attached