diff options
author | Peter Korsgaard <peter@korsgaard.com> | 2017-09-07 16:45:51 +0200 |
---|---|---|
committer | Peter Korsgaard <peter@korsgaard.com> | 2017-09-08 11:13:57 +0200 |
commit | 3b85d24c1d927590ed3a336794562e9a512fc216 (patch) | |
tree | a383f07f5182b9b80680b00f43c95e5adbb6b987 /package/qt/0013-src-corelib-arch-qatomic_arm.h-fix-build-on-ARMv8-32.patch | |
parent | f396d1310b630c8d2307f505ec95a17d27d29f23 (diff) | |
download | buildroot-3b85d24c1d927590ed3a336794562e9a512fc216.tar.gz buildroot-3b85d24c1d927590ed3a336794562e9a512fc216.zip |
gd: security bump to version 2.2.5
Fixes the following security issues:
CVE-2017-6362: Double-free in gdImagePngPtr()
CVE-2017-7890: Buffer over-read into uninitialized memory
Drop patches no more needed:
0001-gdlib-config.patch: @LIBICONV@ is nowadays correct AC_SUBST'ed by
configure
0002-gd_bmp-fix-build-with-uClibc.patch: upstream uses ceil() since
https://github.com/libgd/libgd/commit/6913dd3cd2a7c2914ad9622419f9343bfe956135
While we're at it, add a hash for the license file.
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Diffstat (limited to 'package/qt/0013-src-corelib-arch-qatomic_arm.h-fix-build-on-ARMv8-32.patch')
0 files changed, 0 insertions, 0 deletions