summaryrefslogtreecommitdiffstats
path: root/package
diff options
context:
space:
mode:
authorBaruch Siach <baruch@tkos.co.il>2017-04-27 13:50:58 +0300
committerPeter Korsgaard <peter@korsgaard.com>2017-04-28 14:43:28 +0200
commite63c2c35665e17e9b63e53bc6620a20d6e748571 (patch)
treefb7d8342053d05745fc1ff14be300df24effab8a /package
parent89300b00976435090f5a3cc04dee8c979dd1d811 (diff)
downloadbuildroot-e63c2c35665e17e9b63e53bc6620a20d6e748571.tar.gz
buildroot-e63c2c35665e17e9b63e53bc6620a20d6e748571.zip
libnl: add upstream security fix
CVE-2017-0553: An elevation of privilege vulnerability in libnl could enable a local malicious application to execute arbitrary code within the context of the Wi-Fi service https://www.mail-archive.com/debian-bugs-dist@lists.debian.org/msg1511855.html Signed-off-by: Baruch Siach <baruch@tkos.co.il> Signed-off-by: Peter Korsgaard <peter@korsgaard.com> (cherry picked from commit 5efbd573c0a4df751e038a927c09af5aac1a233e) Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Diffstat (limited to 'package')
-rw-r--r--package/libnl/libnl.hash1
-rw-r--r--package/libnl/libnl.mk2
2 files changed, 3 insertions, 0 deletions
diff --git a/package/libnl/libnl.hash b/package/libnl/libnl.hash
index 2f1a3cb1b3..eafba4a390 100644
--- a/package/libnl/libnl.hash
+++ b/package/libnl/libnl.hash
@@ -1,2 +1,3 @@
# From https://github.com/thom311/libnl/releases/download/libnl3_2_27/libnl-3.2.27.tar.gz.sha256sum
sha256 4bbbf92b3c78a90f423cf96260bf419a28b75db8cced47051217a56795f58ec6 libnl-3.2.27.tar.gz
+sha256 b7bb929194eefc56c786a7e1ae5176b54713f9013ccec63760f232742ae80361 3e18948f17148e6a3c4255bdeaaf01ef6081ceeb.patch
diff --git a/package/libnl/libnl.mk b/package/libnl/libnl.mk
index 85c0db86f6..af28382dda 100644
--- a/package/libnl/libnl.mk
+++ b/package/libnl/libnl.mk
@@ -11,6 +11,8 @@ LIBNL_LICENSE_FILES = COPYING
LIBNL_INSTALL_STAGING = YES
LIBNL_DEPENDENCIES = host-bison host-flex
+LIBNL_PATCH = https://github.com/thom311/libnl/commit/3e18948f17148e6a3c4255bdeaaf01ef6081ceeb.patch
+
ifeq ($(BR2_PACKAGE_LIBNL_TOOLS),y)
LIBNL_CONF_OPTS += --enable-cli
else
OpenPOWER on IntegriCloud