]> code.ossystems Code Review - openembedded-core.git/commit
curl: upgrade 7.63.0 -> 7.64.0
authorRichard Purdie <richard.purdie@linuxfoundation.org>
Mon, 18 Feb 2019 16:21:58 +0000 (08:21 -0800)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Mon, 25 Feb 2019 10:42:56 +0000 (10:42 +0000)
commit41c3ee4fe87a181786c47da044da700e8f605540
tree462f67044c27e077f5ad3eb0a0544368b69247b2
parent4a94dc8daab8890aaff36ffafdfe2feaa52902d4
curl: upgrade 7.63.0 -> 7.64.0

The license checksum changed as the copyright years changed.

Fixes:
 - CVE-2018-16890: NTLM type-2 out-of-bounds buffer read
 - CVE-2019-3822: NTLMv2 type-3 header stack buffer overflow
 - CVE-2019-3823: SMTP end-of-response out-of-bounds read

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-support/curl/curl_7.64.0.bb [moved from meta/recipes-support/curl/curl_7.63.0.bb with 93% similarity]