]> code.ossystems Code Review - openembedded-core.git/commit
libxml2: Fix CVE-2017-5969
authorAndrej Valek <andrej.valek@siemens.com>
Wed, 14 Jun 2017 13:01:35 +0000 (15:01 +0200)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Thu, 27 Jul 2017 21:34:38 +0000 (22:34 +0100)
commitf0017a7b8b3fc4407e6596156b57aa1183937382
tree33d139254a560d6033a3f929634728781d3dca20
parenta409c50a09b12caa434b2b06bdcfb6beba43f67f
libxml2: Fix CVE-2017-5969

Fix NULL pointer deref in xmlDumpElementContent

Can only be triggered in recovery mode.

Fixes bug 758422

CVE: CVE-2017-5969
(From OE-Core rev: 0cae039cbe513b7998e067f4f3958af2ec65ed1a)

Signed-off-by: Andrej Valek <andrej.valek@siemens.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
meta/recipes-core/libxml/libxml2/libxml2-CVE-2017-5969.patch [new file with mode: 0644]
meta/recipes-core/libxml/libxml2_2.9.4.bb