]> code.ossystems Code Review - openembedded-core.git/commit
cpio: fix bug CVE-2014-9112 for cpio-2.11
authorBian Naimeng <biannm@cn.fujitsu.com>
Mon, 8 Dec 2014 05:45:07 +0000 (13:45 +0800)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Fri, 6 Feb 2015 14:47:53 +0000 (14:47 +0000)
commit674e1b4d44c7b108a843d486178182b943607a55
treece70d597ef7be41f6d129808c1faf552dcd9247e
parentf34de2175f1d6a443f219b8ceaaf796cfbc6efd5
cpio: fix bug CVE-2014-9112 for cpio-2.11

Obtain detain from following URL.
  http://lists.gnu.org/archive/html/bug-cpio/2014-12/msg00000.html
  http://git.savannah.gnu.org/cgit/cpio.git/commit/?id=746f3ff670dcfcdd28fcc990e79cd6fccc7ae48d

(From OE-Core rev: 9a32da05f5a9bc62c592fd2d6057dc052e363261)

Signed-off-by: Bian Naimeng <biannm@cn.fujitsu.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-extended/cpio/cpio-2.11/fix-memory-overrun.patch [new file with mode: 0644]
meta/recipes-extended/cpio/cpio_2.11.bb