]> code.ossystems Code Review - openembedded-core.git/commit
glibc: CVE-2015-8779
authorArmin Kuster <akuster@mvista.com>
Sat, 6 Feb 2016 23:14:43 +0000 (15:14 -0800)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Sun, 7 Feb 2016 17:20:57 +0000 (17:20 +0000)
commit2e1c8cab3bc7b70e2a05dca20cb5bcec4335f04d
tree2e04dc9f3ce74ef6f61e519029389c93352f826d
parent9cc998978bd67bc5569cc1478f4ddee40020b929
glibc: CVE-2015-8779

A stack overflow vulnerability in the catopen function was found, causing
applications which pass long strings to the catopen function to crash or,
potentially execute arbitrary code.

(From OE-Core rev: af20e323932caba8883c91dac610e1ba2b3d4ab5)

Signed-off-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-core/glibc/glibc/CVE-2015-8779.patch [new file with mode: 0644]
meta/recipes-core/glibc/glibc_2.21.bb