diff options
author | Peter Korsgaard <peter@korsgaard.com> | 2017-10-12 23:17:52 +0200 |
---|---|---|
committer | Thomas Petazzoni <thomas.petazzoni@free-electrons.com> | 2017-10-15 15:58:44 +0200 |
commit | 746502418fbf603464efe0dfc77c6bc10b10603e (patch) | |
tree | 0f3b875851919d821c2a2f2471995b53e1c1a814 /package/qt5/qt5xmlpatterns/qt5xmlpatterns.mk | |
parent | b1363093248b6198eab285124b2c87411155a0a1 (diff) | |
download | buildroot-746502418fbf603464efe0dfc77c6bc10b10603e.tar.gz buildroot-746502418fbf603464efe0dfc77c6bc10b10603e.zip |
libnss: security bump to version 3.33
Fixes CVE-2017-7805 - Martin Thomson discovered that nss, the Mozilla
Network Security Service library, is prone to a use-after-free vulnerability
in the TLS 1.2 implementation when handshake hashes are generated. A remote
attacker can take advantage of this flaw to cause an application using the
nss library to crash, resulting in a denial of service, or potentially to
execute arbitrary code.
Also add a hash for the license file while we're at it.
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
Diffstat (limited to 'package/qt5/qt5xmlpatterns/qt5xmlpatterns.mk')
0 files changed, 0 insertions, 0 deletions