]> code.ossystems Code Review - openembedded-core.git/commit
ghostscript: CVE-2017-9727, -9835, -11714
authorJoe Slater <jslater@windriver.com>
Tue, 22 Aug 2017 21:14:46 +0000 (14:14 -0700)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 23 Aug 2017 07:44:41 +0000 (08:44 +0100)
commit2eae91f9fa1cfdd3f0e6111956c8f193fd0db69f
treec8585e5f414bf5eac3b0dfba77b3d2bd89ce9cc6
parent3e5d80c84f4c141bc3f3193d1db899b0e56993cf
ghostscript: CVE-2017-9727, -9835, -11714

CVE-2017-9727: make bounds check in gx_ttfReader__Read more robust
CVE-2017-9835: bounds check the array allocations methods
CVE-2017-11714: prevent trying to reloc a freed object

Signed-off-by: Joe Slater <jslater@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-extended/ghostscript/ghostscript/CVE-2017-11714.patch [new file with mode: 0644]
meta/recipes-extended/ghostscript/ghostscript/CVE-2017-9727.patch [new file with mode: 0644]
meta/recipes-extended/ghostscript/ghostscript/CVE-2017-9835.patch [new file with mode: 0644]
meta/recipes-extended/ghostscript/ghostscript_9.21.bb