diff options
author | Baruch Siach <baruch@tkos.co.il> | 2018-08-24 07:56:14 +0300 |
---|---|---|
committer | Thomas Petazzoni <thomas.petazzoni@bootlin.com> | 2018-08-24 14:38:01 +0200 |
commit | 5ef5b39bd4006526717364b39b04a663ce174517 (patch) | |
tree | 70ef8b57a9acf4eb6d52ef06cab4357be6fae429 /package/json-c/json-c.mk | |
parent | 59af8a3a223d2d5fdd6496ef59b79be38d957df5 (diff) | |
download | buildroot-5ef5b39bd4006526717364b39b04a663ce174517.tar.gz buildroot-5ef5b39bd4006526717364b39b04a663ce174517.zip |
openssh: security bump to version 7.8
Fixes CVE-2018-15473: user enumeration vulnerability due to not delaying
bailout for an invalid authenticating user until after the packet
containing the request has been fully parsed.
Some OpenSSH developers don't consider this a security issue:
https://lists.mindrot.org/pipermail/openssh-unix-dev/2018-August/037138.html
Signed-off-by: Baruch Siach <baruch@tkos.co.il>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
Diffstat (limited to 'package/json-c/json-c.mk')
0 files changed, 0 insertions, 0 deletions