]> code.ossystems Code Review - openembedded-core.git/commit
libxrender: CVE-2016-7949
authorSona Sarmadi <sona.sarmadi@enea.com>
Fri, 27 Jan 2017 07:26:12 +0000 (08:26 +0100)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 8 Feb 2017 11:59:59 +0000 (11:59 +0000)
commit87ffd7ce2e8ece8b44ff3f1c219a74b3590cf14b
treeac01634ed4899eb71cbdd58984aa0d869e7e9686
parentb0c70bef015f1b2a30556a5db5e255592d5bf316
libxrender: CVE-2016-7949

Insufficient validation of server responses results
in overflow of previously reserved memory

Upstream patch:
https://cgit.freedesktop.org/xorg/lib/libXrender/commit/?id=9362c7ddd1af3b168953d0737877bc52d79c94f4

External References:
https://lists.x.org/archives/xorg-announce/2016-October/002720.html
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-7949

Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
meta/recipes-graphics/xorg-lib/libxrender/CVE-2016-7949.patch [new file with mode: 0644]
meta/recipes-graphics/xorg-lib/libxrender_0.9.9.bb