summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorGustavo Zacarias <gustavo@zacarias.com.ar>2015-03-11 11:09:51 -0300
committerPeter Korsgaard <peter@korsgaard.com>2015-03-11 17:09:59 +0100
commit0df6ad5ddb5036dcc7400d79e83a803e1cac9908 (patch)
treee4bab09df99b03575d947b6bc3eb6cf8b2685a2c
parent6029d1b81b475032069307e95558e7a8f766253a (diff)
downloadbuildroot-0df6ad5ddb5036dcc7400d79e83a803e1cac9908.tar.gz
buildroot-0df6ad5ddb5036dcc7400d79e83a803e1cac9908.zip
libssh2: security bump to version 1.5.0
Fixes CVE-2015-1782 - kex: bail out on rubbish in the incoming packet. Also add hash file. Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar> Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
-rw-r--r--package/libssh2/libssh2.hash2
-rw-r--r--package/libssh2/libssh2.mk2
2 files changed, 3 insertions, 1 deletions
diff --git a/package/libssh2/libssh2.hash b/package/libssh2/libssh2.hash
new file mode 100644
index 0000000000..ccc6ed5000
--- /dev/null
+++ b/package/libssh2/libssh2.hash
@@ -0,0 +1,2 @@
+# Locally calculated after checking pgp signature
+sha256 83196badd6868f5b926bdac8017a6f90fb8a90b16652d3bf02df0330d573d0fc libssh2-1.5.0.tar.gz
diff --git a/package/libssh2/libssh2.mk b/package/libssh2/libssh2.mk
index 1a1a06f6f2..3b4df3755e 100644
--- a/package/libssh2/libssh2.mk
+++ b/package/libssh2/libssh2.mk
@@ -4,7 +4,7 @@
#
################################################################################
-LIBSSH2_VERSION = 1.4.3
+LIBSSH2_VERSION = 1.5.0
LIBSSH2_SITE = http://www.libssh2.org/download
LIBSSH2_LICENSE = BSD
LIBSSH2_LICENSE_FILES = COPYING
OpenPOWER on IntegriCloud