]> code.ossystems Code Review - openembedded-core.git/commit
e2fsprogs: CVE-2015-0247
authorSona Sarmadi <sona.sarmadi@enea.com>
Thu, 12 Mar 2015 10:01:01 +0000 (11:01 +0100)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Mon, 16 Mar 2015 17:38:49 +0000 (17:38 +0000)
commit572437720b6698a3a10627fcd9654ef10f827836
tree44b2b4eddd418bc6cb1dc04194d19cbdc697049a
parent22c0bc1b80d87bfd4f8d1fcbbb231b994f7e03b8
e2fsprogs: CVE-2015-0247

Fixes a heap buffer overflow in lib/ext2fs/openfs.c which allows
a trivial arbitrary memory write under certain conditions.

References
http://git.kernel.org/cgit/fs/ext2/e2fsprogs.git/commit/?id=f66e6ce4
http://www.ocert.org/advisories/ocert-2015-002.html

Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
meta/recipes-devtools/e2fsprogs/e2fsprogs/CVE-2015-0247.patch [new file with mode: 0644]
meta/recipes-devtools/e2fsprogs/e2fsprogs_1.42.9.bb