]> code.ossystems Code Review - openembedded-core.git/commit
libtasn1: CVE-2015-3622
authorSona Sarmadi <sona.sarmadi@enea.com>
Mon, 14 Sep 2015 10:04:32 +0000 (12:04 +0200)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Fri, 18 Sep 2015 18:21:47 +0000 (19:21 +0100)
commit553bc30b96cd9ef9c5bc621debcf7c23c66d7e42
tree3ebb2076aec3ab87277569fb336ad3d18ec05db6
parent35ecb0b8557aae85f377c9d99f1a72cbb76fb6d8
libtasn1: CVE-2015-3622

_asn1_extract_der_octet: prevent past of boundary access

References:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3622
http://git.savannah.gnu.org/gitweb/?p=libtasn1.git;a=patch;
h=f979435823a02f842c41d49cd41cc81f25b5d677

Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
meta/recipes-support/gnutls/libtasn1/libtasn1-CVE-2015-3622.patch [new file with mode: 0644]
meta/recipes-support/gnutls/libtasn1_4.0.bb