]> code.ossystems Code Review - openembedded-core.git/commit
lighttpd: backport a fix for CVE-2022-22707
authorRoss Burton <ross@burtonini.com>
Mon, 17 Jan 2022 11:20:56 +0000 (11:20 +0000)
committerAnuj Mittal <anuj.mittal@intel.com>
Tue, 25 Jan 2022 03:08:53 +0000 (11:08 +0800)
commit6e90764934722e527c3a326faa62054e68e4d2f6
tree204772a6cc1ee991b85e4ec5530483f0dd30e27e
parent10e6043aa5a11675127760097580b78a8cac4515
lighttpd: backport a fix for CVE-2022-22707

Backport the fix for CVE-2022-22707, a buffer overflow in mod_extforward.

Signed-off-by: Ross Burton <ross.burton@arm.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
(cherry picked from commit 7758596613cc442f647fd4625b36532f30e6129f)
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-extended/lighttpd/lighttpd/0001-mod_extforward-fix-out-of-bounds-OOB-write-fixes-313.patch [new file with mode: 0644]
meta/recipes-extended/lighttpd/lighttpd_1.4.59.bb