diff options
author | Peter Korsgaard <peter@korsgaard.com> | 2017-06-18 23:20:04 +0200 |
---|---|---|
committer | Thomas Petazzoni <thomas.petazzoni@free-electrons.com> | 2017-06-19 22:06:03 +0200 |
commit | c0ad6ded018ffbc33f7f52a4bbcc6f08a14bfbd6 (patch) | |
tree | 6155e56272c750a4427012a5ea242648f6fb4947 /package/python-cheroot | |
parent | 1a050ad9b378fd5e402985f0caafe5b1b332ad7b (diff) | |
download | buildroot-c0ad6ded018ffbc33f7f52a4bbcc6f08a14bfbd6.tar.gz buildroot-c0ad6ded018ffbc33f7f52a4bbcc6f08a14bfbd6.zip |
expat: security bump to version 2.2.1
Fixes:
- CVE-2017-9233 - External entity infinite loop DoS. See:
https://libexpat.github.io/doc/cve-2017-9233/
- CVE-2016-9063 -- Detect integer overflow
And further more:
- Fix regression from fix to CVE-2016-0718 cutting off longer tag names.
- Extend fix for CVE-2016-5300 (use getrandom() if available).
- Extend fix for CVE-2012-0876 (Change hash algorithm to William Ahern's
version of SipHash).
Also add an upstream patch to fix detection of getrandom().
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
Diffstat (limited to 'package/python-cheroot')
0 files changed, 0 insertions, 0 deletions