]> code.ossystems Code Review - openembedded-core.git/commit
e2fsprogs: CVE-2015-0247
authorSona Sarmadi <sona.sarmadi@enea.com>
Thu, 12 Mar 2015 10:01:01 +0000 (11:01 +0100)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Fri, 17 Apr 2015 21:38:34 +0000 (22:38 +0100)
commit67ac6070b1b11a3459ed8fd7e145eb476e493dc6
treebdfbfd76cb12d8a116486b7a1a25ae9e0d438f80
parent5aee64c9577affc35ad1555f2a7eb9d287b9fda4
e2fsprogs: CVE-2015-0247

Fixes a heap buffer overflow in lib/ext2fs/openfs.c which allows
a trivial arbitrary memory write under certain conditions.

References
http://git.kernel.org/cgit/fs/ext2/e2fsprogs.git/commit/?id=f66e6ce4
http://www.ocert.org/advisories/ocert-2015-002.html

(From OE-Core rev: 572437720b6698a3a10627fcd9654ef10f827836)

Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
meta/recipes-devtools/e2fsprogs/e2fsprogs/CVE-2015-0247.patch [new file with mode: 0644]
meta/recipes-devtools/e2fsprogs/e2fsprogs_1.42.9.bb