]> code.ossystems Code Review - openembedded-core.git/commit
glibc: Security fix for CVE-2017-8804
authorRajkumar Veer <rveer@mvista.com>
Fri, 22 Sep 2017 15:31:23 +0000 (21:01 +0530)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Fri, 8 Dec 2017 16:35:59 +0000 (16:35 +0000)
commitb7099c48641f5db6ec7831a48c9d9c5e9e9de6f9
treebfdeb389cb7707cfb2a6a5cb855a7ce2bbb13c76
parent07e041138f0b037e7ddc75a33c7960668acdb8bb
glibc: Security fix for CVE-2017-8804

Source: https://sourceware.org
MR: 74337
Type: Security Fix
Disposition: Backport from https://sourceware.org/ml/libc-alpha/2017-05/msg00105.html
ChangeID: c8c51220e40185dd0ac3d657046e70b82cb94bee
Description:

CVE-2017-8804
sunrpc: xdr_bytes/xdr_string need to free buffer on error [BZ #21461]

Affects: glibc < 2.25

Signed-off-by: Rajkumar Veer <rveer@mvista.com>
Reviewed-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Armin Kuster <akuster@mvista.com>
meta/recipes-core/glibc/glibc/CVE-2017-8804.patch [new file with mode: 0644]
meta/recipes-core/glibc/glibc_2.24.bb