]> code.ossystems Code Review - openembedded-core.git/commit
qemu-vnc: CVE-2014-7815
authorSona Sarmadi <sona.sarmadi@enea.com>
Wed, 19 Aug 2015 12:14:29 +0000 (14:14 +0200)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 1 Sep 2015 20:28:02 +0000 (21:28 +0100)
commit31e3d1bab6612d8116086f9ada048a0c094fb2c8
treec1bf77100c731c5ad08a6492ad174dbdf48f1878
parent0bd4b0c7ede8a52559e4bf05085a3f0d46a0a280
qemu-vnc: CVE-2014-7815

Fixes an uninitialized data structure use flaw in qemu-vnc
which allows remote attackers to cause a denial of service
(crash).

Upstream patch:
http://git.qemu.org/?p=qemu.git;a=commit;
h=b2f1d90530301d7915dddc8a750063757675b21a

References:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7815
http://www.securityfocus.com/bid/70998

Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
meta/recipes-devtools/qemu/qemu/vnc-CVE-2014-7815.patch [new file with mode: 0644]
meta/recipes-devtools/qemu/qemu_2.1.0.bb