summaryrefslogtreecommitdiffstats
path: root/package/qt5/qt5xmlpatterns/qt5xmlpatterns.mk
diff options
context:
space:
mode:
authorPeter Korsgaard <peter@korsgaard.com>2017-10-12 23:17:52 +0200
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>2017-10-15 15:58:44 +0200
commit746502418fbf603464efe0dfc77c6bc10b10603e (patch)
tree0f3b875851919d821c2a2f2471995b53e1c1a814 /package/qt5/qt5xmlpatterns/qt5xmlpatterns.mk
parentb1363093248b6198eab285124b2c87411155a0a1 (diff)
downloadbuildroot-746502418fbf603464efe0dfc77c6bc10b10603e.tar.gz
buildroot-746502418fbf603464efe0dfc77c6bc10b10603e.zip
libnss: security bump to version 3.33
Fixes CVE-2017-7805 - Martin Thomson discovered that nss, the Mozilla Network Security Service library, is prone to a use-after-free vulnerability in the TLS 1.2 implementation when handshake hashes are generated. A remote attacker can take advantage of this flaw to cause an application using the nss library to crash, resulting in a denial of service, or potentially to execute arbitrary code. Also add a hash for the license file while we're at it. Signed-off-by: Peter Korsgaard <peter@korsgaard.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
Diffstat (limited to 'package/qt5/qt5xmlpatterns/qt5xmlpatterns.mk')
0 files changed, 0 insertions, 0 deletions
OpenPOWER on IntegriCloud