diff options
author | Baruch Siach <baruch@tkos.co.il> | 2018-08-07 17:55:22 +0300 |
---|---|---|
committer | Peter Korsgaard <peter@korsgaard.com> | 2018-08-08 16:19:28 +0200 |
commit | 760fbe789c77571b2baf1ddbb3b10207ece7fd7a (patch) | |
tree | d6e66c4781cd226740d8055fbeeefe68000e987c /package/libgit2/libgit2.hash | |
parent | d7dcc6c0196e0d7b68a1da56a5a2a39616a3fcbe (diff) | |
download | buildroot-760fbe789c77571b2baf1ddbb3b10207ece7fd7a.tar.gz buildroot-760fbe789c77571b2baf1ddbb3b10207ece7fd7a.zip |
libarchive: add upstream security patches
Add patches for the following security issues:
CVE-2017-14501 - An out-of-bounds read flaw exists in parse_file_info in
archive_read_support_format_iso9660.c when extracting a specially
crafted iso9660 iso file.
CVE-2017-14502 - Off-by-one error for UTF-16 names in RAR archives,
leading to an out-of-bounds read in archive_read_format_rar_read_header.
CVE-2017-14503 - Out-of-bounds read within lha_read_data_none() in
archive_read_support_format_lha.c when extracting a specially crafted
lha archive.
Signed-off-by: Baruch Siach <baruch@tkos.co.il>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Diffstat (limited to 'package/libgit2/libgit2.hash')
0 files changed, 0 insertions, 0 deletions