summaryrefslogtreecommitdiffstats
path: root/meta/recipes-core/ncurses/ncurses_6.3+20220423.bb
diff options
context:
space:
mode:
authorSoumya Sambu <soumya.sambu@windriver.com>2024-05-06 04:33:40 +0000
committerSteve Sakoman <steve@sakoman.com>2024-05-08 05:19:25 -0700
commit60b34c34351833f0a9be4b31c5bc3b94ad960c60 (patch)
treecceba0fabec1289f9d9b39d083ab0e48343ab7ad /meta/recipes-core/ncurses/ncurses_6.3+20220423.bb
parentebe4a219117ba0c161fefe45c514234384291e23 (diff)
downloadopenembedded-core-contrib-60b34c34351833f0a9be4b31c5bc3b94ad960c60.tar.gz
ncurses: Fix CVE-2023-45918
ncurses 6.4-20230610 has a NULL pointer dereference in tgetstr in tinfo/lib_termcap.c. References: https://nvd.nist.gov/vuln/detail/CVE-2023-45918 Signed-off-by: Soumya Sambu <soumya.sambu@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'meta/recipes-core/ncurses/ncurses_6.3+20220423.bb')
-rw-r--r--meta/recipes-core/ncurses/ncurses_6.3+20220423.bb1
1 files changed, 1 insertions, 0 deletions
diff --git a/meta/recipes-core/ncurses/ncurses_6.3+20220423.bb b/meta/recipes-core/ncurses/ncurses_6.3+20220423.bb
index da1e6d838d..1fa5e036e9 100644
--- a/meta/recipes-core/ncurses/ncurses_6.3+20220423.bb
+++ b/meta/recipes-core/ncurses/ncurses_6.3+20220423.bb
@@ -5,6 +5,7 @@ SRC_URI += "file://0001-tic-hang.patch \
file://0003-gen-pkgconfig.in-Do-not-include-LDFLAGS-in-generated.patch \
file://CVE-2023-29491.patch \
file://CVE-2023-50495.patch \
+ file://CVE-2023-45918.patch \
"
# commit id corresponds to the revision in package version
SRCREV = "a0bc708bc6954b5d3c0a38d92b683c3ec3135260"