]> code.ossystems Code Review - openembedded-core.git/commit
libgcrypt: fix CVE-2019-13627
authorTrevor Gamblin <trevor.gamblin@windriver.com>
Tue, 5 Nov 2019 13:05:52 +0000 (08:05 -0500)
committerArmin Kuster <akuster808@gmail.com>
Sun, 10 Nov 2019 21:54:34 +0000 (13:54 -0800)
commit3361760dbb46cca2e00f053286404b5df39590b3
tree988106964558834bb80653cd2f494c89285d733c
parentd764ed9515d10db636ef63e0d05ac66f2a454ad4
libgcrypt: fix CVE-2019-13627

Backport two fixes for CVE-2019-13627 from upstream
to zeus.

Signed-off-by: Trevor Gamblin <trevor.gamblin@windriver.com>
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-support/libgcrypt/files/0001-dsa-ecdsa-Fix-use-of-nonce-use-larger-one.patch [new file with mode: 0644]
meta/recipes-support/libgcrypt/files/0001-ecc-Add-mitigation-against-timing-attack.patch [new file with mode: 0644]
meta/recipes-support/libgcrypt/libgcrypt_1.8.4.bb