]> code.ossystems Code Review - openembedded-core.git/commitdiff
librsvg: Security fixes via update to 2.40.15
authorArmin Kuster <akuster@mvista.com>
Tue, 3 May 2016 13:33:36 +0000 (06:33 -0700)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Mon, 9 May 2016 07:03:57 +0000 (08:03 +0100)
CVE-2016-4347 librsvg2: DoS parsing SVGs with circular definitions in certain rsvg_cairo_*() functions

CVE-2016-4348 librsvg2: DoS parsing SVGs with circular definitions _rsvg_css_normalize_font_size() function

Signed-off-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
meta/recipes-gnome/librsvg/librsvg_2.40.15.bb [moved from meta/recipes-gnome/librsvg/librsvg_2.40.13.bb with 91% similarity]

similarity index 91%
rename from meta/recipes-gnome/librsvg/librsvg_2.40.13.bb
rename to meta/recipes-gnome/librsvg/librsvg_2.40.15.bb
index 2ac52f7797dd54f769ff14a765355f15f69a83dd..caa6a24c9ee2e8395169eb7c773104db4889083a 100644 (file)
@@ -14,8 +14,8 @@ inherit autotools pkgconfig gnomebase gtk-doc pixbufcache upstream-version-is-ev
 
 SRC_URI += "file://gtk-option.patch"
 
-SRC_URI[archive.md5sum] = "ad03780e12c56e52474d8edf86976c73"
-SRC_URI[archive.sha256sum] = "4d6ea93ec05f5dabe7262d711d246a0a99b2311e215360dd3dcabd6afe3b9804"
+SRC_URI[archive.md5sum] = "3a66ab5b4fe1fb43b471708e4ff39a0e"
+SRC_URI[archive.sha256sum] = "d9cac4a123eec6e553a26e120979bab7425def9ae7ce7c079eba5e4a45db05f4"
 
 CACHED_CONFIGUREVARS = "ac_cv_path_GDK_PIXBUF_QUERYLOADERS=${STAGING_LIBDIR_NATIVE}/gdk-pixbuf-2.0/gdk-pixbuf-query-loaders"