summaryrefslogtreecommitdiffstats
path: root/support/scripts/brpkgutil.py
diff options
context:
space:
mode:
authorBaruch Siach <baruch@tkos.co.il>2018-04-09 19:20:36 +0300
committerPeter Korsgaard <peter@korsgaard.com>2018-04-09 21:01:30 +0200
commitc3e1d9849a72495f799b007260bbcdc61fc78da3 (patch)
tree1b877807c65e0370bebbc6bcda6a9d4cba949927 /support/scripts/brpkgutil.py
parent014dbd4855fa0d52a32d2e2d15b425c64b2e7c95 (diff)
downloadbuildroot-c3e1d9849a72495f799b007260bbcdc61fc78da3.tar.gz
buildroot-c3e1d9849a72495f799b007260bbcdc61fc78da3.zip
patch: add upstream security fix
Fixes CVE-2018-1000156: arbitrary command execution in ed-style patches. Depend on MMU for now, because the patch adds a fork() call. Upstream later switched to gnulib provided execute(), so this dependency can be dropped on the next version bump. Signed-off-by: Baruch Siach <baruch@tkos.co.il> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com> (cherry picked from commit f4a4df2084b923f29eca2130976ca10a7aa6b719) Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Diffstat (limited to 'support/scripts/brpkgutil.py')
0 files changed, 0 insertions, 0 deletions
OpenPOWER on IntegriCloud