]> code.ossystems Code Review - openembedded-core.git/commit
patch: fix CVE-2015-1196
authorRobert Yang <liezhi.yang@windriver.com>
Thu, 26 Mar 2015 06:42:34 +0000 (23:42 -0700)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Fri, 17 Apr 2015 21:38:34 +0000 (22:38 +0100)
commite2032c5788f7a77aa0e4e8545b550551c23a25fb
treece816324d5bbe8ca841bec387f21c195d132c25a
parent67ac6070b1b11a3459ed8fd7e145eb476e493dc6
patch: fix CVE-2015-1196

A directory traversal flaw was reported in patch:

References:
http://www.openwall.com/lists/oss-security/2015/01/18/6
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=775227
https://bugzilla.redhat.com/show_bug.cgi?id=1182154

[YOCTO #7182]

(From OE-Core rev: 4c389880dc9c6221344f7aed221fe8356e8c2056)

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
meta/recipes-devtools/patch/patch/patch-CVE-2015-1196.patch [new file with mode: 0644]
meta/recipes-devtools/patch/patch_2.7.1.bb