diff options
author | Minjae Kim <flowergom@gmail.com> | 2022-09-26 23:33:08 +0200 |
---|---|---|
committer | Steve Sakoman <steve@sakoman.com> | 2022-09-26 12:29:44 -1000 |
commit | 1c385e70d4bfab2334361ba82f29988bb11d6902 (patch) | |
tree | 54b56b287197b76be3c428eb8abc35c6973092f1 /meta/recipes-connectivity/inetutils/inetutils_1.9.4.bb | |
parent | ef38f7acee3f0ae400138fa60f4695a86dffc16e (diff) | |
download | openembedded-core-contrib-1c385e70d4bfab2334361ba82f29988bb11d6902.tar.gz |
inetutils: CVE-2022-39028 - fix remote DoS vulnerability in inetutils-telnetd
Fix telnetd crash if the first two bytes of a new connection
are 0xff 0xf7 (IAC EC) or 0xff 0xf8 (IAC EL).
CVE: CVE-2022-39028
Signed-off-by:Minjae Kim <flowergom@gmail.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'meta/recipes-connectivity/inetutils/inetutils_1.9.4.bb')
-rw-r--r-- | meta/recipes-connectivity/inetutils/inetutils_1.9.4.bb | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/meta/recipes-connectivity/inetutils/inetutils_1.9.4.bb b/meta/recipes-connectivity/inetutils/inetutils_1.9.4.bb index f4450e19f4..fe391b8bce 100644 --- a/meta/recipes-connectivity/inetutils/inetutils_1.9.4.bb +++ b/meta/recipes-connectivity/inetutils/inetutils_1.9.4.bb @@ -24,6 +24,7 @@ SRC_URI = "${GNU_MIRROR}/inetutils/inetutils-${PV}.tar.gz \ file://0001-rcp-fix-to-work-with-large-files.patch \ file://fix-buffer-fortify-tfpt.patch \ file://CVE-2021-40491.patch \ + file://CVE-2022-39028.patch \ " SRC_URI[md5sum] = "04852c26c47cc8c6b825f2b74f191f52" |