]> code.ossystems Code Review - openembedded-core.git/commit
curl: upgrade to 7.58.0
authorOleksandr Kravchuk <open.source@oleksandr-kravchuk.com>
Mon, 19 Feb 2018 01:32:09 +0000 (02:32 +0100)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Thu, 3 May 2018 08:52:07 +0000 (09:52 +0100)
commitf99e2ce01ed01cf036a8282b2d155d941ed7ec9b
treee2e82b84282ba4fa03f45a3cd41dd72b5ddae572
parent7f1029aff8abaadb25730fef50c495dcd6fc1e30
curl: upgrade to 7.58.0

(From OE-Core rev: 9763c9d649a22f9024d832eb625bee35b583e717)

This update include these CVES:
CVE-2018-1000122 CWE-126: Buffer Over-read
CVE-2018-1000121 CWE-476: NULL Pointer Dereference
CVE-2018-1000120 CWE-122: Heap-based Buffer Overflow

Mostly bugfixes.

Signed-off-by: Oleksandr Kravchuk <open.source@oleksandr-kravchuk.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
meta/recipes-support/curl/curl_7.58.0.bb [moved from meta/recipes-support/curl/curl_7.57.0.bb with 95% similarity]