diff options
| author | Gustavo Zacarias <gustavo@zacarias.com.ar> | 2014-10-08 10:19:49 -0300 |
|---|---|---|
| committer | Peter Korsgaard <peter@korsgaard.com> | 2014-10-08 19:33:02 +0200 |
| commit | ff4201ed9c5b7994815caa01cd5114b8d799ee76 (patch) | |
| tree | 56c7cd3d82baf7981fb4fd17b42048c877f505cf /package/sysklogd/sysklogd.hash | |
| parent | d1058c2d2d9204bea3a903cc92c1d21f4c5aae54 (diff) | |
| download | buildroot-ff4201ed9c5b7994815caa01cd5114b8d799ee76.tar.gz buildroot-ff4201ed9c5b7994815caa01cd5114b8d799ee76.zip | |
sysklogd: security bump to version 1.5.1
Fixes CVE-2014-3634 - invalid priority values between 192 and 1023
(directly or arrived at via overflow wraparound) can propagate through
code causing out-of-bounds access to the f_pmask array within the
'filed' structure by up to 104 bytes past its end.
Switch to vanilla since Debian hasn't handled this yet and add hash
file.
Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Diffstat (limited to 'package/sysklogd/sysklogd.hash')
| -rw-r--r-- | package/sysklogd/sysklogd.hash | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/package/sysklogd/sysklogd.hash b/package/sysklogd/sysklogd.hash new file mode 100644 index 0000000000..dd5b89a884 --- /dev/null +++ b/package/sysklogd/sysklogd.hash @@ -0,0 +1,2 @@ +# Locally calculated from download (no sig, hash) +sha256 5166c185ae23c92e8b9feee66a6e3d0bc944bf673112f53e3ecf62e08ce7c201 sysklogd-1.5.1.tar.gz |

