]> code.ossystems Code Review - openembedded-core.git/commit
squashfs-tools: fix CVE-2021-40153
authorKai Kang <kai.kang@windriver.com>
Fri, 10 Sep 2021 05:01:44 +0000 (13:01 +0800)
committerAnuj Mittal <anuj.mittal@intel.com>
Wed, 15 Sep 2021 02:06:17 +0000 (10:06 +0800)
commit09de4ef3f33540069a37e9fe6e13081984b77511
tree9526d4cb616b587f12636474e55ad0d3864e192d
parent38bf4de2bfec63457b55b4ea07d14ca37389e74f
squashfs-tools: fix CVE-2021-40153

Backport patch to fix CVE-2021-40153, and remove version update in
unsquashfs.c for compatible.

CVE: CVE-2021-40153

Ref:
* https://security-tracker.debian.org/tracker/CVE-2021-40153

Signed-off-by: Kai Kang <kai.kang@windriver.com>
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-devtools/squashfs-tools/files/CVE-2021-40153.patch [new file with mode: 0644]
meta/recipes-devtools/squashfs-tools/squashfs-tools_git.bb