]> code.ossystems Code Review - openembedded-core.git/commit
cpio: fix bug CVE-2014-9112 for cpio-2.8
authorBian Naimeng <biannm@cn.fujitsu.com>
Mon, 8 Dec 2014 05:45:06 +0000 (13:45 +0800)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 31 Dec 2014 10:16:59 +0000 (10:16 +0000)
commit695d14dc92d7de89ae02dac0928f184519b8b57d
tree0439607014f885a3007ea0a4e19ccd03a5c49e68
parenta3dae5c091017827a293affbb8ade179a23efd6d
cpio: fix bug CVE-2014-9112 for cpio-2.8

Obtain detain from following URL.
http://lists.gnu.org/archive/html/bug-cpio/2014-12/msg00000.html
http://git.savannah.gnu.org/cgit/cpio.git/commit/?id=746f3ff670dcfcdd28fcc990e79cd6fccc7ae48d

(From OE-Core rev: 732fc8de55a9c7987608162879959c03423de907)

Signed-off-by: Bian Naimeng <biannm@cn.fujitsu.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
meta/recipes-extended/cpio/cpio-2.8/fix-memory-overrun.patch [new file with mode: 0644]
meta/recipes-extended/cpio/cpio_2.8.bb