]> code.ossystems Code Review - openembedded-core.git/commit
lighttpd: backport a fix for CVE-2022-22707
authorRoss Burton <ross@burtonini.com>
Mon, 17 Jan 2022 11:20:56 +0000 (11:20 +0000)
committerAnuj Mittal <anuj.mittal@intel.com>
Wed, 26 Jan 2022 03:40:00 +0000 (11:40 +0800)
commitd54d7e7b43da621be8e6fcca34feb7b3d49b8160
treebd1858802e7a6be3902a78ef9cf114054638a9fc
parentc58cea5f6a6ea4afd1af4d7b4008febb37729680
lighttpd: backport a fix for CVE-2022-22707

Backport the fix for CVE-2022-22707, a buffer overflow in mod_extforward.

Signed-off-by: Ross Burton <ross.burton@arm.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
(cherry picked from commit 7758596613cc442f647fd4625b36532f30e6129f)
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-extended/lighttpd/lighttpd/0001-mod_extforward-fix-out-of-bounds-OOB-write-fixes-313.patch [new file with mode: 0644]
meta/recipes-extended/lighttpd/lighttpd_1.4.59.bb