]> code.ossystems Code Review - openembedded-core.git/commit
icu: CVE-2013-2924
authorYue Tao <Yue.Tao@windriver.com>
Thu, 5 Dec 2013 23:52:19 +0000 (17:52 -0600)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 10 Dec 2013 11:36:24 +0000 (11:36 +0000)
commit36e2981687acc5b7a74f08718d4578f92af4dc8b
treeaf725245f40bcdec3bbbee87253b90ffcd0866c0
parente7b2b84dece29d16b8f05daf962b69e78dd64cb3
icu: CVE-2013-2924

Use-after-free vulnerability in International Components for Unicode (ICU),
as used in Google Chrome before 30.0.1599.66 and other products, allows
remote attackers to cause a denial of service or possibly have unspecified
other impact via unknown vectors.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-2924

Signed-off-by: Yue Tao <Yue.Tao@windriver.com>
Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Mark Hatle <mark.hatle@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-support/icu/icu-51.2/add_buffer_length_check_to_UTF_16_or_32_detector.patch [new file with mode: 0644]
meta/recipes-support/icu/icu_51.2.bb