diff options
author | Baruch Siach <baruch@tkos.co.il> | 2017-06-28 21:44:31 +0300 |
---|---|---|
committer | Peter Korsgaard <peter@korsgaard.com> | 2017-06-28 23:21:44 +0200 |
commit | 6da327adb21d1cb0f1962b2cadae256ba217972a (patch) | |
tree | 2302e32816eb838da3d49ecdd3040cc62b3a90b5 /package/mesa3d/0002-Fix-runtime-error-with-uClibc.patch | |
parent | 54778b7d7e84863c4bc3036e69f959ed52b7953b (diff) | |
download | buildroot-6da327adb21d1cb0f1962b2cadae256ba217972a.tar.gz buildroot-6da327adb21d1cb0f1962b2cadae256ba217972a.zip |
systemd: add security fix
Add a fix for CVE-2017-9445: In systemd through 233, certain sizes passed to
dns_packet_new in systemd-resolved can cause it to allocate a buffer that's
too small. A malicious DNS server can exploit this via a response with a
specially crafted TCP payload to trick systemd-resolved into allocating a
buffer that's too small, and subsequently write arbitrary data beyond the
end of it.
The other patch fixes an issue with the security fix.
[Peter: use CVE description from MITRE]
Cc: Maxime Hadjinlian <maxime.hadjinlian@gmail.com>
Cc: Yann E. MORIN <yann.morin.1998@free.fr>
Signed-off-by: Baruch Siach <baruch@tkos.co.il>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Diffstat (limited to 'package/mesa3d/0002-Fix-runtime-error-with-uClibc.patch')
0 files changed, 0 insertions, 0 deletions