]> code.ossystems Code Review - openembedded-core.git/commit
curl: Security fixes for CVE-2020-{8169/8177}
authorArmin Kuster <akuster@mvista.com>
Fri, 26 Jun 2020 02:26:01 +0000 (19:26 -0700)
committerSteve Sakoman <steve@sakoman.com>
Fri, 26 Jun 2020 21:53:49 +0000 (11:53 -1000)
commitf42702baee57ab3d1b7ab7833e72c7d56ad4ee94
treea86066f10797d55f57a8f6af82c8eebef508becc
parentd9c5d9c52eb1f03ff9c907a76dda31042fb26edb
curl: Security fixes for CVE-2020-{8169/8177}

Source: https://curl.haxx.se/
MR: 104472, 104458
Type: Security Fix
Disposition: Backport from https://github.com/curl/curl/commit/{600a8cded447cd/8236aba58542c5f}
ChangeID: 1300924f7a64b22375b4326daeef0b686481e30c
Description:

- Affected versions: curl 7.20.0 to and including 7.70.0
- Not affected versions: curl < 7.20.0 and curl >= 7.71.0

Fixes both CVE-2020-8169 and CVE-2020-8177

Signed-off-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-support/curl/curl/CVE-2020-8169.patch [new file with mode: 0644]
meta/recipes-support/curl/curl/CVE-2020-8177.patch [new file with mode: 0644]
meta/recipes-support/curl/curl_7.69.1.bb