]> code.ossystems Code Review - openembedded-core.git/commit
cpio: fix bug CVE-2014-9112 for cpio-2.8
authorBian Naimeng <biannm@cn.fujitsu.com>
Mon, 8 Dec 2014 05:45:06 +0000 (13:45 +0800)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Fri, 6 Feb 2015 14:47:57 +0000 (14:47 +0000)
commit6f238c8293c3578eead15bf9f9ab5fdf95d1e9a5
treed29d444e4b08fc6dd611ed802f17e7069d7017c6
parent674e1b4d44c7b108a843d486178182b943607a55
cpio: fix bug CVE-2014-9112 for cpio-2.8

Obtain detain from following URL.
http://lists.gnu.org/archive/html/bug-cpio/2014-12/msg00000.html
http://git.savannah.gnu.org/cgit/cpio.git/commit/?id=746f3ff670dcfcdd28fcc990e79cd6fccc7ae48d

(From OE-Core rev: 732fc8de55a9c7987608162879959c03423de907)

Signed-off-by: Bian Naimeng <biannm@cn.fujitsu.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-extended/cpio/cpio-2.8/fix-memory-overrun.patch [new file with mode: 0644]
meta/recipes-extended/cpio/cpio_2.8.bb